A High Throughput Distributed Log Stream Processing System for Network Security Analysis

被引:0
|
作者
Zhao, Jingfen [1 ]
Zhang, Peng [1 ]
Sun, Yong [1 ]
Liu, Qingyun [1 ]
Tan, Guolin [1 ]
Li, Zhengmin [2 ]
机构
[1] Chinese Acad Sci, Inst Informat Engn, Natl Engn Lab Informat Secur Technol, Beijing, Peoples R China
[2] Chinese Acad Sci, Inst Informat Engn, Natl Comp Network Emergency Response & Coordinat, Beijing, Peoples R China
来源
2017 IEEE 9TH INTERNATIONAL CONFERENCE ON COMMUNICATION SOFTWARE AND NETWORKS (ICCSN) | 2017年
基金
中国国家自然科学基金;
关键词
log stream; security analysis; big data; scalability;
D O I
暂无
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Computer-system logs often contain high volumes of interesting, useful information, and are an important data source for network security analysis. In this paper, we propose a distributed log stream processing system consisting of three main parts: log collection module, log transmission module and log statistics module. The system uses several open source technologies, not only supports multi-source heterogeneous log collection, but also provides near-real-time online statistics for log stream and offline statistics for massive log. In addition, we adopt a layered architecture in the log collection module, and accomplish a reliable Kafka consumer to get higher scalability as well as reliability. Using log entries generated by the network security platform as data source to do experiment, demonstrates that the proposed system is an effective and practical log stream processing system.
引用
收藏
页码:1092 / 1096
页数:5
相关论文
共 50 条
  • [31] Dragon: A Lightweight, High Performance Distributed Stream Processing Engine
    Harwood, Aaron
    Read, Maria Rodriguez
    Amarasinghe, Gayashan Niroshana
    2020 IEEE 40TH INTERNATIONAL CONFERENCE ON DISTRIBUTED COMPUTING SYSTEMS (ICDCS), 2020, : 1344 - 1351
  • [32] DolphinNext: a distributed data processing platform for high throughput genomics
    Yukselen, Onur
    Turkyilmaz, Osman
    Ozturk, Ahmet Rasit
    Garber, Manuel
    Kucukural, Alper
    BMC GENOMICS, 2020, 21 (01)
  • [33] DolphinNext: a distributed data processing platform for high throughput genomics
    Onur Yukselen
    Osman Turkyilmaz
    Ahmet Rasit Ozturk
    Manuel Garber
    Alper Kucukural
    BMC Genomics, 21
  • [34] On-Chip-Network Cryptosystem: a High Throughput and High Security Architecture
    Young, Chung-Ping
    Chia, Chung-Chu
    Chen, Liang-Bi
    Huang, Ing-Jer
    2008 IEEE ASIA PACIFIC CONFERENCE ON CIRCUITS AND SYSTEMS (APCCAS 2008), VOLS 1-4, 2008, : 1276 - +
  • [35] To Migrate or Not to Migrate: An Analysis of Operator Migration in Distributed Stream Processing
    Volnes, Espen
    Plagemann, Thomas
    Goebel, Vera
    IEEE COMMUNICATIONS SURVEYS AND TUTORIALS, 2024, 26 (01): : 670 - 705
  • [36] Software development and design of network security system based on log data
    Shi, Lin
    Ma, Yang
    Lv, Yan
    Chen, Liquan
    JOURNAL OF ELECTRONIC IMAGING, 2023, 32 (01)
  • [37] Log-based Network Security Audit System Research and Design
    Qing, Xia
    MATERIALS AND MANUFACTURING TECHNOLOGY, PTS 1 AND 2, 2010, 129-131 : 1426 - 1431
  • [38] Effect of Joint Detection on System Throughput in Distributed Antenna Network
    Ishikawa, Haruya
    Sanada, Yukitoshi
    IEICE TRANSACTIONS ON COMMUNICATIONS, 2019, E102B (03) : 641 - 647
  • [39] Distributed XML stream filtering system with high scalability
    Uchiyama, F
    Onizuka, M
    Honishi, T
    ICDE 2005: 21ST INTERNATIONAL CONFERENCE ON DATA ENGINEERING, PROCEEDINGS, 2005, : 968 - 977
  • [40] GPU-Accelerated High-Throughput Online Stream Data Processing
    Chen, Zhenhua
    Xu, Jielong
    Tang, Jian
    Kwiat, Kevin A.
    Kamhoua, Charles Alexandre
    Wang, Chonggang
    IEEE TRANSACTIONS ON BIG DATA, 2018, 4 (02) : 191 - 202