谷歌浏览器插件
订阅小程序
在清言上使用

Profiling Network Traffic Behavior for the Purpose of Anomaly-Based Intrusion Detection

Manmeet Singh Gill,Dale Lindskog,Pavol Zavarsky

2018 17th IEEE International Conference On Trust, Security And Privacy In Computing And Communications/ 12th IEEE International Conference On Big Data Science And Engineering (TrustCom/BigDataSE)(2018)

引用 3|浏览6
暂无评分
摘要
In this paper, we propose methods for profiling normal network traffic, methods that could be employed for the purpose of creating a baseline that would be used in the detection of threshold based anomalies in network traffic. This profiling is based on five proposed features of network traffic, and to illustrate, testing was done using recent and large data sets, and relying on various tools to statistically analyze network traffic. Although we have no pretensions of completeness, our results indicate that this is a promising approach to differentiate between normal and abnormal network traffic behavior, and therefore a promising contribution to anomaly based intrusion detection.
更多
查看译文
关键词
NIDS, normal and abnormal behavior, profiling baseline, threshold, statistical Analysis, data sets, features, anomaly detection
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要