Netfiow Based Flow Analysis and Monitor

liu bin,lin chuang,ruan donghua,peng xuehai
DOI: https://doi.org/10.1109/ICCT.2006.341847
2006-01-01
Abstract:In this paper, a flow analysis and monitor system based on Netflow is introduced. The system builds on Brower-Server framework, aims at enterprise scene. Data collecting and display are separated into two modules, makes it clearly demarcated and easy to deploy. Data collecting module receives and analyses Netflow-exported packets, insert per flow traffic information into Oracle database. Display module acts as a J2EE web server, fetches real-time or history traffic information from database and shows to web users. A real-time abnormal flow monitor module is embedded in the system to detect worm and other malicious attacks.
What problem does this paper attempt to address?