Actas de congresos
3D Network Traffic Monitoring Based on an Automatic Attack Classifier
Fecha
2014-01-01Registro en:
Computational Science And Its Applications - Iccsa 2014, Pt Ii. Berlin: Springer-verlag Berlin, v. 8580, p. 342-+, 2014.
0302-9743
WOS:000349532500026
Autor
Universidade Federal de São Carlos (UFSCar)
Universidade Estadual Paulista (Unesp)
Corollarium Technol
Universidade de São Paulo (USP)
Institución
Resumen
In the last years, the exponential growth of computer networks has created an incredibly increase of network data traffic. The management becomes a challenging task, requesting a continuous monitoring of the network to detect and diagnose problems, and to fix problems and to optimize performance. Tools, such as Tcpdump and Snort are commonly used as network sniffer, logging and analysis applied on a dedicated host or network segment. They capture the traffic and analyze it for suspicious usage patterns, such as those that occur normally with port scans or Denial-of-service attacks. These tools are very important for the network management, but they do not take advantage of human cognitive capacity of the learning and pattern recognition. To overcome this limitation, this paper aims to present a visual interactive and multiprojection 3D tool with automatic data classification for attack detection.