Skip to Content
[CAIDA - Cooperative Association for Internet Data Analysis logo]
The Cooperative Association for Internet Data Analysis
www.caida.org > publications : papers : 2001 : StreamsFlowsTorrents
Streams, Flows and Torrents

This paper extends the RTFM (RFCs 2720-2724) definition of network traffic as bidirectional flows by adding the concepts of streams and torrents. Example analysis demonstrates useful traffic analysis based on collecting flow data for stream-based flow metrics.

N. Brownlee and M. Murray, “Streams, Flows and Torrents'', in Passive and Active Network Measurement Workshop (PAM), Amsterdam, Netherlands, Apr 2001, RIPE NCC.
|  View full paper:    DNS root ruleset for UCSD    gzipped postscript    HTML    NeTraMet    PDF    |  View citation:    BibTeX  |

Streams, Flows and Torrents

Nevil Brownlee 1, 2
Margaret Murray 2
1

IT Systems & Services - ITSS
The University of Auckland

2

Cooperative Association for Internet Data Analysis - CAIDA
San Diego Supercomputer Center,
University of California, San Diego

RTFM (RFCs 2720-2724) considers network traffic as being made up of bidirectional flows, which are arbitrary groupings of packets defined only by attributes of their end-points. This paper extends RTFM's view of traffic by adding two further concepts, streams and torrents. Streams are individual IP sessions (e.g. TCP or UDP) between ports on pairs of hosts, while a torrent refers to all traffic on a link.

We present stream measurement work using a meter located at UCSD (University of California, San Diego) to measure response times for DNS requests to the global root and gTLD nameservers. This example shows how to configure NeTraMet to collect flow data for stream-based flow metrics, and demonstrates the usefulness of global DNS response plots for network operations.

  Last Modified: Fri May-3-2013 15:19:48 PDT
  Page URL: http://www.caida.org/publications/papers/2001/StreamsFlowsTorrents/index.xml