首页> 外文会议>International Conference on Networking pt.1; 20050417-21; Reunion Island(FR) >An Automatic and Generic Early-Bird System for Internet Backbone Based on Traffic Anomaly Detection
【24h】

An Automatic and Generic Early-Bird System for Internet Backbone Based on Traffic Anomaly Detection

机译:一种基于流量异常检测的自动通用互联网骨干早鸟系统

获取原文
获取原文并翻译 | 示例

摘要

Worm and Dos, DDos attacks take place more and more frequently nowadays. It makes the internet security facing serious threat. In this paper, we introduced the algorithm and design of ESTABD, an internet backbone Early-bird System of Traffic Anomaly Detection Based. By observing the raw variables such as packets count of protocol, TCP flags and payload length distribution etc., ESTABD analyzes real-time traffic to discover the abrupt traffic anomalous and generate warnings. A traffic anomaly detection algorithm based on Statistic Prediction theory is put forward and the algorithm has been tested on real network data. Further more, Alerts correlation algorithm and system policy are addressed in this paper to detect the known worms& Dos attacks and potentially unknown threats.
机译:蠕虫和Dos,DDos攻击如今越来越频繁。这使互联网安全面临严重威胁。在本文中,我们介绍了基于互联网的骨干网早鸟交通异常检测系统ESTABD的算法和设计。通过观察原始变量,例如协议的数据包计数,TCP标志和有效载荷长度分布等,ESTABD可以分析实时流量以发现突然的流量异常并生成警告。提出了一种基于统计预测理论的流量异常检测算法,并对实际网络数据进行了测试。此外,本文还讨论了警报关联算法和系统策略,以检测已知的蠕虫和Dos攻击以及潜在的未知威胁。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号