Logo des Repositoriums
 

Interactive analysis of NetFlows for misuse detection inlarge IP networks

dc.contributor.authorMansmann, Florian
dc.contributor.authorFischer, Fabian
dc.contributor.authorKeim, Daniel A.
dc.contributor.authorPietzko, Stephan
dc.contributor.authorWaldvogel, Marcel
dc.contributor.editorMüller, Paul
dc.contributor.editorNeumair, Bernhard
dc.contributor.editorRodosek, Gabi Dreo
dc.date.accessioned2019-02-20T10:17:14Z
dc.date.available2019-02-20T10:17:14Z
dc.date.issued2009
dc.description.abstractWhile more and more applications require higher network bandwidth, there is also a tendency that large portions of this bandwidth are misused for dubious purposes, such as unauthorized VoIP, file sharing, or criminal botnet activity. Automatic intrusion detection methods can detect a large portion of such misuse, but novel patterns can only be detected by humans. Moreover, interpretation of large amounts of alerts imposes new challenges on the analysts. The goal of this paper is to present the visual analysis system NFlowVis to interactively detect unwanted usage of the network infrastructure either by pivoting NetFlows using IDS alerts or by specifying usage patterns, such as sets of suspicious port numbers. Thereby, our work focuses on providing a scalable approach to store and retrieve large quantities of NetFlows by means of a database management system.en
dc.identifier.isbn978-3-88579-243-7
dc.identifier.pissn1617-5468
dc.identifier.urihttps://dl.gi.de/handle/20.500.12116/20405
dc.language.isoen
dc.publisherGesellschaft für Informatik e.V.
dc.relation.ispartof2. DFN-Forum Kommunikationstechnologien
dc.relation.ispartofseriesLecture Notes in Informatics (LNI) - Proceedings, Volume P-149
dc.titleInteractive analysis of NetFlows for misuse detection inlarge IP networksen
dc.typeText/Conference Paper
gi.citation.endPage124
gi.citation.publisherPlaceBonn
gi.citation.startPage115
gi.conference.date27. Mai bis 28. Mai 2009
gi.conference.locationMünchen
gi.conference.sessiontitleRegular Research Papers

Dateien

Originalbündel
1 - 1 von 1
Lade...
Vorschaubild
Name:
115.pdf
Größe:
194.1 KB
Format:
Adobe Portable Document Format