【24h】

Aguri: An Aggregation-Based Traffic Profiler

机译:Aguri:基于聚合的流量分析器

获取原文

摘要

Aguri is an aggregation-based traffic profiler targeted for near real-time, long-term, and wide-area traffic monitoring. Aguri adapts itself to spatial traffic distribution by aggregating small volume flows into aggregates, and achieves temporal aggregation by creating a summary of summaries applying the same algorithm to its outputs. A set of scripts are used for archiving and visualizing summaries in different time scales. Aguri does not need a predefined rule set and is capable of detecting an unexpected increase of unknown protocols or DoS attacks, which considerably simplifies the task of network monitoring. Once aggregates are identified and profiled, it becomes possible to make use of the profile records to control the aggregates in best-effort traffic. As a possible solution, we propose a technique to preferentially drop packets from aggregates whose volume is more than the fairshare. Our prototype implementation demonstrates its ability to protect the network from DoS attacks and to provide rough fairness among aggregates.
机译:Aguri是一个基于聚合的流量分析器,用于近实时,长期和广域交通监控。 Aguri通过将小卷流聚合到聚集体中的空间流量分布,并通过创建将相同算法应用于其输出的总结摘要来实现时间聚合。一组脚本用于归档和可视化不同时间尺度的摘要。 Aguri不需要预定义规则集,并且能够检测未知协议或DOS攻击的意外增加,这显着简化了网络监视的任务。一旦识别并分析了聚合,就可以使用配置文件记录来控制最佳流量的聚合。作为一种可能的解决方案,我们提出了一种技术优先从其体积超过展位的聚集体丢弃包。我们的原型实施证明了其保护网络免受DOS攻击的能力,并在汇总之间提供粗糙的公平性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号