Statistical model applied to NetFlow for network intrusion detection

Nenhuma Miniatura disponível

Data

2010-12-31

Autores

Proto, André [UNESP]
Alexandre, Leandro A. [UNESP]
Batista, Maira L. [UNESP]
Oliveira, Isabela L. [UNESP]
Cansian, Adriano M. [UNESP]

Título da Revista

ISSN da Revista

Título de Volume

Editor

Resumo

The computers and network services became presence guaranteed in several places. These characteristics resulted in the growth of illicit events and therefore the computers and networks security has become an essential point in any computing environment. Many methodologies were created to identify these events; however, with increasing of users and services on the Internet, many difficulties are found in trying to monitor a large network environment. This paper proposes a methodology for events detection in large-scale networks. The proposal approaches the anomaly detection using the NetFlow protocol, statistical methods and monitoring the environment in a best time for the application. © 2010 Springer-Verlag Berlin Heidelberg.

Descrição

Palavras-chave

anomaly, intrusion detection, NetFlow, network, Security, statistical, NetFlows, Internet protocols, Network security, Intrusion detection

Como citar

Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics), v. 6480, n. PART 2, p. 179-191, 2010.