Measurement modules: Difference between revisions

From Allegro Network Multimeter Manual
Jump to navigation Jump to search
Access restrictions were established for this page. If you see this message, you have no access to this page.
No edit summary
 
(38 intermediate revisions by 10 users not shown)
Line 1: Line 1:
The Allegro Network Multimeter provides a variety of network measurement modules for different use cases. Here
The Allegro Network Multimeter provides a number of network measurement modules for different use cases. Here
you can find a list of modules and a short description, see the specific module for detailed documentation.  
you can find a list of modules and a short description and see the specific module for detailed documentation.  


*'''Generic'''
== Generic modules ==
# [[Capture module]]
# [[Path measurement]]
# [[Packet ring buffer]]
# [[PCAP]]
#[[Incidents]]


*'''L2 - Ethernet layer'''
* [[Capture_module|Capture module]]
#[[MAC module]]
:The Capture module lists all running captures which were started interactively in any other module.
#[[QoS module]]
:It also allows for starting new captures with specific filters.
#[[Packet size module]]
#[[ARP module]]
#[[VLAN module]]
#[[MAC protocols module]]
#[[STP module]]
#[[MPLS module]]
#[[LLDP module]]
#[[Burst analysis]]


* '''[[L3 - IP]]'''
* [[Path_measurement|Path measurement]]
#[[IP module]]
:This module allows you to measure packet loss and latency between two Allegro Network Multimeter installations.
#[[Geolocation statistics]]
#[[DHCP module]]
#[[DNS module]]
#[[NetBIOS module]]
#[[ICMP module]]
#[[Multicast statistics]]


# [[L4 - Transport]]
* [[Packet_ring_buffer|Packet ring buffer]]
# [[L7 - Application(Teil 1)]]
:The packet ring buffer feature allows you to create a buffer of fixed size on an external storage device to which all processed packets will be recorded. If the fixed size buffer is full, the oldest packets in the buffer will be replaced with new packets in a round-robin fashion.
# [[L7 - Application(Teil 2)]]
 
* '''[[Measurement modules(Summary)]]'''
* [[PCAP#Pcap_analysis_module|Pcap analysis module]]
:The Pcap analysis module allows for the analysis of Pcap files by sending them to the appliance. After analyzing a Pcap, the web interface displays all the metadata as if the packets are live traffic at the time of the Pcap recording.
 
* [[Incidents#Incidents_module|Incidents module]]
:The Incidents module allows for notifications to be created when specific network incidents are detected.
 
== L2 - WiFi ==
 
* [[WiFi module]]
:This module analyse wireless frames forwarded by access points.
 
== L2 - Ethernet Layer ==
 
* [[MAC_module|MAC module]]
:The MAC module gathers information about all captured MAC addresses, including the protocols used, traffic, communication peers and MAC/IP mappings.
 
* [[QoS module]]
:The QoS module processes and displays traffic with QoS tags VLAN PCP and MPLS TC on Layer 2 (and IP DSCP on Layer 3).
 
* [[Packet_size_module|Packet size module]]
:The packet size module accounts the size of all packets (Layer 2 with CRC) and shows packet size distribution.
 
* [[ARP_module|ARP module]]
:The ARP module monitors ARP packets for tracking MAC addresses and announced IP addresses.
 
* [[VLAN_module|VLAN module]]
:The VLAN module accounts traffic per VLAN tag seen on the network.
 
* [[MAC_protocols_module|MAC protocols module]]
:The MAC protocols module accounts traffic of all different MAC protocols.
 
* [[STP_module|STP module]]
:The stp module analyzes STP traffic and shows a history of the identified root Bridges with their configurations.
 
* [[MPLS_module|MPLS module]]
:The MPLS module displays information about all identified MPLS labels (single label and double-stacked).
 
* [[LLDP_module|LLDP module]]
:The LLDP module extracts information from LLDP (Link Layer Discovery Protocol) messages and correlates this information to the respective MAC and IP addresses.
 
* [[PPPoE module]]
:The PPPoE module displays all PPPoE sessions and traffic within a specific session.
 
* [[Burst_analysis|Burst analysis]]
:The Burst analysis module measures throughput per interface or MAC address and displays utilization graphs for fast burst recognition.
 
* [[LACP_module|LACP module]]
:The LACP module shows information gathered from LACP packets about port channels.
 
* [[VXLAN_module|VXLAN module]]
:The VXLAN module shows information about all seen VXLANs.
 
* [[Geneve_module|GENEVE module]]
:The GENEVE module shows information about all seen GENEVE VNIs.
 
== L3 - IP Layer ==
* [[IP_module|IP module]]
:The IP module gathers information about all captured IPv4 and IPv6 addresses including the protocol used, traffic, communication peers, and connections.
 
* [[IP_groups|IP groups]]
:The IP groups module gathers information for groups of IP addresses. Any IP subnet can be configured to be used as a group.
 
* [[IP_pairs|IP pairs]]
:The IP pairs module shows traffic information between pairs of IP addresses.
 
* [[QoS_module|QoS module]]
:The QoS module processes and displays traffic with QoS tags for IP DSCP on Layer 3 and VLAN PCP (and MPLS TC on Layer 2).
 
* [[Geolocation_statistics|Geolocation statistics]]
:The Allegro Network Multimeter uses a geolocation library to identify the IP addresses of individual countries. The country information is shown in other modules; however, this web page lists all countries and their corresponding amount of traffic. It also shows detailed statistics per country including all IP addresses seen for that country.
 
* [[DHCP_module|DHCP module]]
:The DHCP module tracks requests and responses for dynamic IP assignments in networks.
 
* [[DNS_module|DNS module]]
:DNS name resolving is handled passively by processing all DNS requests and responses captured by the system.
:This module lists all IP addresses and names known by the system. This information is used by other modules to look up names.
 
* [[NetBIOS_module|NetBIOS module]]
:The NetBIOS module monitors NetBIOS packets for tracking announced host names for IP addresses.
 
* [[ICMP_module|ICMP module]]
:The ICMP module shows information about ICMP traffic and specific packet types.
 
* [[Multicast_statistics|Multicast statistics]]
:The multicast module analyzes IGMP traffic and displays detailed information on multicast groups and members.
 
* [[BGP_module|BGP module]]
:The BGP module processes BGP traffic and displays detailed information about BGP router and router pairs.
 
== L4 - Transport Layer ==
 
* [[Connections_module|Connections module]]
:The Connections module provides access to a list of connections of all IPs aggregated together based on selected sort and filter parameters.
 
* [[TCP_module|TCP module]]
:The TCP module measures the TCP handshake time for connection setup. It allows you to identify slow responding servers in a network.
 
* [[UDP module|UDP module]]
:The UDP module shows global UDP traffic, IP adresses with UDP traffic and UDP connections.
 
* [[Layer_4_server_ports_module|Layer 4 server ports module]]
:The Layer 4 server ports module measures traffic per TCP and UDP server port.
 
* [[IPSec_module|IPSec module]]
:The IPSec module shows information about IPSec ESP traffic and sequence counter correctness.
 
== L7 - Application Layer ==
 
 
* [[SSL_module|SSL module]]
:The SSL module keeps track of SSL server names and common names in SSL/TLS encrypted traffic. It enables you to get the name resolved even if no DNS has been seen.
 
* [[HTTP_module|HTTP module]]
:The HTTP module keeps track of HTTP host names requested in HTTP connections. It allows you to get the name resolved even if no DNS has been seen and to see which virtual host is handled by a given server.
 
* [[L7_module|L7 module]]
:The L7 module gathers information about all supported Layer 7 protocols. This includes information on how much traffic was seen for each protocol for each IPv4 and IPv6 address.
 
* [[Response_time_analysis|Response time analysis]]
:The response-time analysis module allows you to define your own protocol request and response pattern and measure the response time and request/response loss.
 
* [[SMB_statistics|SMB statistics]]
:The SMB module gathers information about all SMB servers handling unencrypted traffic. It shows which shares have been accessed and which files in those shares have been read or written to, together with detailed statistics per file.
 
* [[SIP_module|SIP module]]
:The SIP statistics includes all SIP calls and their associated metadata.
 
* [[NTP_module|NTP module]]
:The NTP module shows detailed information about Network Time Protocol servers selected and their corresponding network clients.
 
* [[PTP_module|PTP module]]
:The PTP module stores the PTP members and their associated metadata like the PTP version.
 
* [[Profinet_module|Profinet module]]
:The Profinet module analyzes Profinet RT cyclic and acyclic traffic and displays details on all devices and their communication relationships.
 
* [[OPC-UA_module|OPC-UA module]]
:The OPC-UA module displays information about OPC-UA binary protocol traffic and performs response-time measurement.
 
* [[Fix_module|FIX module]]
:The FIX module shows information about '''F'''inancial '''I'''nformation e'''X'''change traffic.
 
* [[IEC_60870-5-104_module|IEC 60870-5-104 module]]
:The IEC 60870-5-104 module shows information about IEC 60870-5-104 traffic, sequence counter correctness and response times.
 
* [[IEC61850_module|IEC 61850 module]]
:The IEC 61850 module analyzes '''G'''eneric '''O'''bject '''O'''riented '''S'''ubstation '''E'''vent (GOOSE) and IEC 61850 Sampled Values traffic and shows information about the different traffic types and sequence counter correctness.
 
* [[RADIUS_module|RADIUS module]]
:The RADIUS module analyzes '''R'''emote '''A'''uthentication '''D'''ial-'''I'''n '''U'''ser '''S'''ervice traffic and shows the protocol traffic, response times, message types and sequence counter correctness.
 
* [[TDS_module|TDS module]]
:The TDS module analyzes MS-SQL '''T'''abular '''D'''ata '''S'''tream traffic and shows the protocol traffic, response times and the recognized negotiated protocol version.
 
* [[TETRA_module|TETRA module]]
:The TETRA module shows detailed information about '''Te'''rrestrial '''T'''runked '''Ra'''dio traffic.
 
* [[QUIC module]]
:The QUIC Analysis Module provides comprehensive insights into '''Q'''uick '''U'''DP '''I'''nternet '''C'''onnections traffic.
 
* [[DICOM_statistics|DICOM module]]
:The DICOM module shows information about DICOM (Digital Imaging and Communications in Medicine) protocol usage.
 
* [[RTP_statistics|RTP statistics]]
:The RTP module shows detailed information about RTP codecs used.

Latest revision as of 07:50, 16 July 2025

The Allegro Network Multimeter provides a number of network measurement modules for different use cases. Here you can find a list of modules and a short description and see the specific module for detailed documentation.

Generic modules

The Capture module lists all running captures which were started interactively in any other module.
It also allows for starting new captures with specific filters.
This module allows you to measure packet loss and latency between two Allegro Network Multimeter installations.
The packet ring buffer feature allows you to create a buffer of fixed size on an external storage device to which all processed packets will be recorded. If the fixed size buffer is full, the oldest packets in the buffer will be replaced with new packets in a round-robin fashion.
The Pcap analysis module allows for the analysis of Pcap files by sending them to the appliance. After analyzing a Pcap, the web interface displays all the metadata as if the packets are live traffic at the time of the Pcap recording.
The Incidents module allows for notifications to be created when specific network incidents are detected.

L2 - WiFi

This module analyse wireless frames forwarded by access points.

L2 - Ethernet Layer

The MAC module gathers information about all captured MAC addresses, including the protocols used, traffic, communication peers and MAC/IP mappings.
The QoS module processes and displays traffic with QoS tags VLAN PCP and MPLS TC on Layer 2 (and IP DSCP on Layer 3).
The packet size module accounts the size of all packets (Layer 2 with CRC) and shows packet size distribution.
The ARP module monitors ARP packets for tracking MAC addresses and announced IP addresses.
The VLAN module accounts traffic per VLAN tag seen on the network.
The MAC protocols module accounts traffic of all different MAC protocols.
The stp module analyzes STP traffic and shows a history of the identified root Bridges with their configurations.
The MPLS module displays information about all identified MPLS labels (single label and double-stacked).
The LLDP module extracts information from LLDP (Link Layer Discovery Protocol) messages and correlates this information to the respective MAC and IP addresses.
The PPPoE module displays all PPPoE sessions and traffic within a specific session.
The Burst analysis module measures throughput per interface or MAC address and displays utilization graphs for fast burst recognition.
The LACP module shows information gathered from LACP packets about port channels.
The VXLAN module shows information about all seen VXLANs.
The GENEVE module shows information about all seen GENEVE VNIs.

L3 - IP Layer

The IP module gathers information about all captured IPv4 and IPv6 addresses including the protocol used, traffic, communication peers, and connections.
The IP groups module gathers information for groups of IP addresses. Any IP subnet can be configured to be used as a group.
The IP pairs module shows traffic information between pairs of IP addresses.
The QoS module processes and displays traffic with QoS tags for IP DSCP on Layer 3 and VLAN PCP (and MPLS TC on Layer 2).
The Allegro Network Multimeter uses a geolocation library to identify the IP addresses of individual countries. The country information is shown in other modules; however, this web page lists all countries and their corresponding amount of traffic. It also shows detailed statistics per country including all IP addresses seen for that country.
The DHCP module tracks requests and responses for dynamic IP assignments in networks.
DNS name resolving is handled passively by processing all DNS requests and responses captured by the system.
This module lists all IP addresses and names known by the system. This information is used by other modules to look up names.
The NetBIOS module monitors NetBIOS packets for tracking announced host names for IP addresses.
The ICMP module shows information about ICMP traffic and specific packet types.
The multicast module analyzes IGMP traffic and displays detailed information on multicast groups and members.
The BGP module processes BGP traffic and displays detailed information about BGP router and router pairs.

L4 - Transport Layer

The Connections module provides access to a list of connections of all IPs aggregated together based on selected sort and filter parameters.
The TCP module measures the TCP handshake time for connection setup. It allows you to identify slow responding servers in a network.
The UDP module shows global UDP traffic, IP adresses with UDP traffic and UDP connections.
The Layer 4 server ports module measures traffic per TCP and UDP server port.
The IPSec module shows information about IPSec ESP traffic and sequence counter correctness.

L7 - Application Layer

The SSL module keeps track of SSL server names and common names in SSL/TLS encrypted traffic. It enables you to get the name resolved even if no DNS has been seen.
The HTTP module keeps track of HTTP host names requested in HTTP connections. It allows you to get the name resolved even if no DNS has been seen and to see which virtual host is handled by a given server.
The L7 module gathers information about all supported Layer 7 protocols. This includes information on how much traffic was seen for each protocol for each IPv4 and IPv6 address.
The response-time analysis module allows you to define your own protocol request and response pattern and measure the response time and request/response loss.
The SMB module gathers information about all SMB servers handling unencrypted traffic. It shows which shares have been accessed and which files in those shares have been read or written to, together with detailed statistics per file.
The SIP statistics includes all SIP calls and their associated metadata.
The NTP module shows detailed information about Network Time Protocol servers selected and their corresponding network clients.
The PTP module stores the PTP members and their associated metadata like the PTP version.
The Profinet module analyzes Profinet RT cyclic and acyclic traffic and displays details on all devices and their communication relationships.
The OPC-UA module displays information about OPC-UA binary protocol traffic and performs response-time measurement.
The FIX module shows information about Financial Information eXchange traffic.
The IEC 60870-5-104 module shows information about IEC 60870-5-104 traffic, sequence counter correctness and response times.
The IEC 61850 module analyzes Generic Object Oriented Substation Event (GOOSE) and IEC 61850 Sampled Values traffic and shows information about the different traffic types and sequence counter correctness.
The RADIUS module analyzes Remote Authentication Dial-In User Service traffic and shows the protocol traffic, response times, message types and sequence counter correctness.
The TDS module analyzes MS-SQL Tabular Data Stream traffic and shows the protocol traffic, response times and the recognized negotiated protocol version.
The TETRA module shows detailed information about Terrestrial Trunked Radio traffic.
The QUIC Analysis Module provides comprehensive insights into Quick UDP Internet Connections traffic.
The DICOM module shows information about DICOM (Digital Imaging and Communications in Medicine) protocol usage.
The RTP module shows detailed information about RTP codecs used.