標題: Network security management with traffic pattern clustering
作者: Chiou, Tao-Wei
Tsai, Shi-Chun
Lin, Yi-Bing
資訊工程學系
Department of Computer Science
關鍵字: Clustering;Machine learning;Jaccard similarity;ROC curve;Denial of service;Big data
公開日期: 1-九月-2014
摘要: Profiling network traffic pattern is an important approach for tackling network security problem. Based on campus network infrastructure, we propose a new method to identify randomly generated domain names and pinpoint the potential victim groups. We characterize normal domain names with the so called popular 2gram (2 consecutive characters in a word) to distinguish between active and nonexistent domain names. We also track the destination IPs of sources IPs and analyze their similarity of connection pattern to uncover potential anomalous group network behaviors. We apply the Hadoop technique to deal with the big data of network traffic and classify the clients as victims or not with the spectral clustering method.
URI: http://dx.doi.org/10.1007/s00500-013-1218-0
http://hdl.handle.net/11536/25038
ISSN: 1432-7643
DOI: 10.1007/s00500-013-1218-0
期刊: SOFT COMPUTING
Volume: 18
Issue: 9
起始頁: 1757
結束頁: 1770
顯示於類別:期刊論文


文件中的檔案:

  1. 000340498800010.pdf

若為 zip 檔案,請下載檔案解壓縮後,用瀏覽器開啟資料夾中的 index.html 瀏覽全文。