首页> 外国专利> Methods, systems and computer program products for detecting flow-level network traffic anomalies via abstraction levels

Methods, systems and computer program products for detecting flow-level network traffic anomalies via abstraction levels

机译:用于通过抽象级别检测流级别的网络流量异常的方法,系统和计算机程序产品

摘要

Methods, systems and computer program products for detecting flow-level network traffic anomalies via abstraction levels. An exemplary embodiment includes a method for detecting flow-level network traffic anomalies in a computer network, the method including obtaining current distributions of flow level traffic features within the computer network, computing distances of the current distributions' components from a distributions model, comparing the distances of the current distributions to distance baselines from the distributions model, determining if the distances are above a pre-determined thresholds and in response to one or more of the distances being above the pre-determined thresholds in one or more distributions, identifying the current condition to be abnormal and providing indications to its nature.
机译:用于通过抽象级别检测流级别的网络流量异常的方法,系统和计算机程序产品。示例性实施例包括一种用于检测计算机网络中的流量水平网络流量异常的方法,该方法包括:获取计算机网络内流量水平流量特征的当前分布,从分布模型计算当前分布的分量的距离,比较当前分布与分布模型中距离基线的距离,确定距离是否高于预定阈值,并响应一个或多个分布中的一个或多个距离高于预定阈值,确定当前异常状态并提供其性质的指示。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号