Real-time anomaly detection and mitigation using streaming telemetry in SDN

被引:0
|
作者
Kurt Ç. [1 ]
Ayhan Erdem O. [2 ]
机构
[1] Department of Computer Engineering, Institute of Science and Technology, Gazi University, Ankara
[2] Department of Computer Engineering, Faculty of Technology, Gazi University, Ankara
关键词
Anomaly detection; Software-defined networks; Streaming telemetry;
D O I
10.3906/ELK-1909-112
中图分类号
学科分类号
摘要
Measurement and monitoring are crucial for various network tasks such as traffic engineering, anomaly detection, and intrusion prevention. The success of critical capabilities such as anomaly detection and prevention depends on whether the utilized network measurement method is able to provide granular, near real-time, low-overhead measurement data or not. In addition to the measurement method, the anomaly detection and mitigation algorithm is also essential for recognizing normal and abnormal traffic patterns in such a huge amount of measured data with high accuracy and low latency. Software-defined networking is an emerging concept to enable programmable and efficient measurement functions for these kinds of challenging requirements. In this paper, we present a new, real-time, model-driven anomaly detection and mitigation platform. Model-driven streaming telemetry and exponential smoothing are the underlying approaches of the platform. A customized collector is proposed to gather streaming telemetry metrics, and Holt’s prediction algorithm is improved to handle real-time streaming data and decrease false positives. The developed system is tested on a campus network and the success rate of the system is calculated as 92%. © TÜBİTAK
引用
收藏
页码:2448 / 2466
页数:18
相关论文
共 50 条
  • [1] Real-time anomaly detection and mitigation using streaming telemetry in SDN
    Kurt, Cagdas
    Erdem, O. Ayhan
    TURKISH JOURNAL OF ELECTRICAL ENGINEERING AND COMPUTER SCIENCES, 2020, 28 (05) : 2448 - 2466
  • [2] Unsupervised real-time anomaly detection for streaming data
    Ahmad, Subutai
    Lavin, Alexander
    Purdy, Scott
    Agha, Zuha
    NEUROCOMPUTING, 2017, 262 : 134 - 147
  • [3] Real-time anomaly detection using parallelized intrusion detection architecture for streaming data
    Chellammal, P.
    Malarchelvi, Sheba Kezia P. D.
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2020, 32 (04):
  • [4] Real-time anomaly detection in gas sensor streaming data
    Wu, Haibo
    Shi, Shiliang
    INTERNATIONAL JOURNAL OF EMBEDDED SYSTEMS, 2021, 14 (01) : 81 - 88
  • [5] Real-time Bayesian anomaly detection in streaming environmental data
    Hill, David J.
    Minsker, Barbara S.
    Amir, Eyal
    WATER RESOURCES RESEARCH, 2009, 45
  • [6] Real-time Anomaly Detection and Classification in Streaming PMU Data
    Hannon, Christopher
    Deka, Deepjyoti
    Jin, Dong
    Vuffray, Marc
    Lokhov, Andrey Y.
    2021 IEEE MADRID POWERTECH, 2021,
  • [7] Using Federated Learning in Anomaly Detection and Analytics on Real-time Streaming Data of Healthcare
    Yogitha, M.
    Srinivas, K. S.
    PROCEEDINGS OF 2023 THE 7TH INTERNATIONAL CONFERENCE ON GRAPHICS AND SIGNAL PROCESSING, ICGSP, 2023, : 29 - 34
  • [8] Real-time Anomaly Detection for Streaming Data using Burst Code on a Neurosynaptic Processor
    Chen, Qiuwen
    Qiu, Qinru
    PROCEEDINGS OF THE 2017 DESIGN, AUTOMATION & TEST IN EUROPE CONFERENCE & EXHIBITION (DATE), 2017, : 205 - 207
  • [9] Real-Time Detection and Mitigation of LDoS Attacks in the SDN Using the HGB-FP Algorithm
    Tang, Dan
    Zhang, Siqi
    Yan, Yudong
    Chen, Jingwen
    Qin, Zheng
    IEEE TRANSACTIONS ON SERVICES COMPUTING, 2022, 15 (06) : 3471 - 3484
  • [10] Detection and Mitigation of Security Attacks using Real Time SDN Analytics
    Veena, S.
    Manju, R.
    2017 INTERNATIONAL CONFERENCE OF ELECTRONICS, COMMUNICATION AND AEROSPACE TECHNOLOGY (ICECA), VOL 2, 2017, : 87 - 93