首页> 外文会议>Scientific Conference Computing in Science and Technology >The possibility of using LACP protocol in anomaly detection systems
【24h】

The possibility of using LACP protocol in anomaly detection systems

机译:在异常检测系统中使用LACP协议的可能性

获取原文
获取外文期刊封面目录资料

摘要

This article presents the use of the Link Aggregation Control Protocol (LACP) for detection of anomalies in network traffic. The idea itself is based on checking the representativeness of a single LACP link for the whole traffic transmitted by the aggregation. This approach allows to reduce the requirements for the performance of threat detection systems, and thus reduce their implementation costs and the gives a possibility of using probes (IDS or IPS) directly in the core of the network. The authors also examine the influence of hashing algorithms used for the particular LACP link on the possibility of using of developed method and on the level of intrusion detection.
机译:本文介绍了链路聚合控制协议(LACP)以检测网络流量中的异常。这个想法本身就是基于检查由聚合传输的整个流量的单个LACP链路的代表性。这种方法允许降低威胁检测系统性能的要求,从而降低其实现成本,并且可以在网络的核心中直接使用探针(IDS或IPS)的可能性。作者还研究了用于特定LACP链路的散列算法对使用开发方法和入侵检测水平的影响。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号