Real-time anomaly detection and mitigation using streaming telemetry in SDN

被引:0
|
作者
Kurt Ç. [1 ]
Ayhan Erdem O. [2 ]
机构
[1] Department of Computer Engineering, Institute of Science and Technology, Gazi University, Ankara
[2] Department of Computer Engineering, Faculty of Technology, Gazi University, Ankara
关键词
Anomaly detection; Software-defined networks; Streaming telemetry;
D O I
10.3906/ELK-1909-112
中图分类号
学科分类号
摘要
Measurement and monitoring are crucial for various network tasks such as traffic engineering, anomaly detection, and intrusion prevention. The success of critical capabilities such as anomaly detection and prevention depends on whether the utilized network measurement method is able to provide granular, near real-time, low-overhead measurement data or not. In addition to the measurement method, the anomaly detection and mitigation algorithm is also essential for recognizing normal and abnormal traffic patterns in such a huge amount of measured data with high accuracy and low latency. Software-defined networking is an emerging concept to enable programmable and efficient measurement functions for these kinds of challenging requirements. In this paper, we present a new, real-time, model-driven anomaly detection and mitigation platform. Model-driven streaming telemetry and exponential smoothing are the underlying approaches of the platform. A customized collector is proposed to gather streaming telemetry metrics, and Holt’s prediction algorithm is improved to handle real-time streaming data and decrease false positives. The developed system is tested on a campus network and the success rate of the system is calculated as 92%. © TÜBİTAK
引用
收藏
页码:2448 / 2466
页数:18
相关论文
共 50 条
  • [21] Real-Time Gait Anomaly Detection Using SVM Time Series Classification
    Rostovski, Jakob
    Krivosei, Andrei
    Kuusik, Alar
    Alam, Muhammad Mahtab
    Ahmadov, Ulvi
    2023 INTERNATIONAL WIRELESS COMMUNICATIONS AND MOBILE COMPUTING, IWCMC, 2023, : 1389 - 1394
  • [22] Machine learning-based real-time anomaly detection using data pre-processing in the telemetry of server farms
    Vajda, Daniel Laszlo
    Do, Tien Van
    Berczes, Tamas
    Farkas, Karoly
    SCIENTIFIC REPORTS, 2024, 14 (01):
  • [23] Real-Time Causal Processing of Anomaly Detection
    Wang, Yulei
    Chen, Shih-Yu
    Wu, Chao-Cheng
    Liu, Chunghong
    Chang, Chein-, I
    HIGH-PERFORMANCE COMPUTING IN REMOTE SENSING II, 2012, 8539
  • [24] Real-Time Anomaly Detection in Elderly Behavior
    Parvin, Parvaneh
    PROCEEDINGS OF THE ACM SIGCHI SYMPOSIUM ON ENGINEERING INTERACTIVE COMPUTING SYSTEMS (EICS'18), 2018,
  • [25] Real-time Anomaly Detection with HMOF Feature
    Zhu, Huihui
    Liu, Bin
    Lu, Yan
    Li, Weihai
    Yu, Nenghai
    PROCEEDINGS OF 2018 THE 2ND INTERNATIONAL CONFERENCE ON VIDEO AND IMAGE PROCESSING (ICVIP 2018), 2018, : 49 - 54
  • [26] Real-Time Dynamic Network Anomaly Detection
    Noble, Jordan
    Adams, Niall M.
    IEEE INTELLIGENT SYSTEMS, 2018, 33 (02) : 5 - 18
  • [27] Real-Time Anomaly Detection for Traveling Individuals
    Ma, Tian-Shyan
    ASSETS'09: PROCEEDINGS OF THE 11TH INTERNATIONAL ACM SIGACCESS CONFERENCE ON COMPUTERS AND ACCESSIBILITY, 2009, : 273 - 274
  • [28] Real-Time Detection and Mitigation of Distributed Denial of Service (DDoS) Attacks in Software Defined Networking (SDN)
    Lawal, Babatunde Hafis
    At, Nuray
    2018 26TH SIGNAL PROCESSING AND COMMUNICATIONS APPLICATIONS CONFERENCE (SIU), 2018,
  • [29] Real-Time Anomaly Detection in Edge Streams
    Bhatia, Siddharth
    Liu, Rui
    Hooi, Bryan
    Yoon, Minji
    Shin, Kijung
    Faloutsos, Christos
    ACM TRANSACTIONS ON KNOWLEDGE DISCOVERY FROM DATA, 2022, 16 (04)
  • [30] Fault Tolerance of Real-time Video Streaming Protocols over SDN Networks
    Gaikwad, Shailendra
    Tafleen, Sana
    Gottumukkala, Raju
    Elgazzar, Khalid
    2018 14TH INTERNATIONAL WIRELESS COMMUNICATIONS & MOBILE COMPUTING CONFERENCE (IWCMC), 2018, : 101 - 107