Statistical model applied to NetFlow for network intrusion detection

被引:3
|
作者
Proto A. [1 ]
Alexandre L.A. [1 ]
Batista M.L. [1 ]
Oliveira I.L. [1 ]
Cansian A.M. [1 ]
机构
[1] UNESP - Universidade Estadual Paulista 'Júlio de Mesquita Filho', Departamento de Ciências de Computação e Estatística, ACME Computer Security Research Lab., 2265, Jd. Nazareth, S. J. do Rio Preto, S. Paulo, Cristóvão Colombo Street
关键词
anomaly; intrusion detection; NetFlow; network; Security; statistical;
D O I
10.1007/978-3-642-17697-5_9
中图分类号
学科分类号
摘要
The computers and network services became presence guaranteed in several places. These characteristics resulted in the growth of illicit events and therefore the computers and networks security has become an essential point in any computing environment. Many methodologies were created to identify these events; however, with increasing of users and services on the Internet, many difficulties are found in trying to monitor a large network environment. This paper proposes a methodology for events detection in large-scale networks. The proposal approaches the anomaly detection using the NetFlow protocol, statistical methods and monitoring the environment in a best time for the application. © 2010 Springer-Verlag Berlin Heidelberg.
引用
收藏
页码:179 / 191
页数:12
相关论文
共 50 条
  • [21] A Novel Hybrid Model for Network Intrusion Detection
    Tiwari, Shobhit
    Roy, Sanjiban Sekhar
    Charaborty, Saptarshi
    Kumar, Anugrah
    2013 INTERNATIONAL CONFERENCE ON GREEN COMPUTING, COMMUNICATION AND CONSERVATION OF ENERGY (ICGCE), 2013, : 685 - 688
  • [22] An intrusion detection model for ad hoc network
    School of Information Science and Engineering, Northeastern University, Shenyang 110004, China
    Dongbei Daxue Xuebao, 2006, 7 (739-742):
  • [23] A network state based intrusion detection model
    Shan, Z
    Chen, P
    Xu, Y
    Xu, K
    2001 INTERNATIONAL CONFERENCE ON COMPUTER NETWORKS AND MOBILE COMPUTING, PROCEEDINGS, 2001, : 481 - 486
  • [24] Hybrid Relabeled Model for Network Intrusion Detection
    Patel, Bhumika
    Somani, Zaheenabanu
    Ajila, Samuel A.
    Lung, Chung-Horng
    IEEE 2018 INTERNATIONAL CONGRESS ON CYBERMATICS / 2018 IEEE CONFERENCES ON INTERNET OF THINGS, GREEN COMPUTING AND COMMUNICATIONS, CYBER, PHYSICAL AND SOCIAL COMPUTING, SMART DATA, BLOCKCHAIN, COMPUTER AND INFORMATION TECHNOLOGY, 2018, : 872 - 877
  • [25] Research on the System Model of Network Intrusion Detection
    Yang Yunfeng
    PROCEEDINGS OF THE 2012 INTERNATIONAL CONFERENCE OF MODERN COMPUTER SCIENCE AND APPLICATIONS, 2013, 191 : 185 - 190
  • [26] SSAE - DeepCNN Model for Network Intrusion Detection
    Lee, Jong-Hwa
    Kim, Jong-Wouk
    Choi, Mi-Jung
    2021 22ND ASIA-PACIFIC NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM (APNOMS), 2021, : 78 - 83
  • [27] A First Look at HTTP(S) Intrusion Detection using NetFlow/IPFIX
    van der Toorn, Olivier
    Hofstede, Rick
    Jonker, Mattijs
    Sperotto, Anna
    PROCEEDINGS OF THE 2015 IFIP/IEEE INTERNATIONAL SYMPOSIUM ON INTEGRATED NETWORK MANAGEMENT (IM), 2015, : 862 - 865
  • [28] Statistical Analysis of Different Artificial Intelligent Techniques applied to Intrusion Detection System
    Tribak, Hind
    Delgado-Marquez, Blanca L.
    Rojas, P.
    Valenzuela, O.
    Pomares, H.
    Rojas, I.
    2012 INTERNATIONAL CONFERENCE ON MULTIMEDIA COMPUTING AND SYSTEMS (ICMCS), 2012, : 433 - 439
  • [29] A Network Intrusion Detection Model Based on Convolutional Neural Network
    Tao, Wenwei
    Zhang, Wenzhe
    Hu, Chao
    Hu, Chaohui
    SECURITY WITH INTELLIGENT COMPUTING AND BIG-DATA SERVICES, 2020, 895 : 771 - 783
  • [30] Comparing Unsupervised Learning Approaches to Detect Network Intrusion Using NetFlow Data
    Zhang, Julina
    Jones, Kerry
    Song, Tianye
    Kang, Hyojung
    Brown, Donald E.
    2017 SYSTEMS AND INFORMATION ENGINEERING DESIGN SYMPOSIUM (SIEDS), 2017, : 122 - 127