Anomaly Detection of Large Scale Network Based on Data Streams

ZHENG Jun,HU Ming-zeng,YUN Xiao-chun,ZHENG Zhong
DOI: https://doi.org/10.3321/j.issn:1000-436x.2006.02.001
2006-01-01
Abstract:The anomaly detection algorithms of the large scale network(LSN) were required to analysis the vast network traffic of G bit level in real-time and on-the-fly.A novel monitoring mechanism of LSN anomaly detection based on the data stream approach was proposed.The main contributions included: the sketch data structure and the frequent sketch algorithm of data streams were designed for anomaly detection of LSN.Optimized query methods were designed for customizing the security monitoring and detection policy with the correlations of multi data streams.The data reduction was proposed to make it possible that the whole network traffic character could be got using a few of special data streams.The experiments of the real networking environments validate the effectivity of LSN anomaly detection methods.
What problem does this paper attempt to address?