Collaborative Approach to Network Behavior Analysis Based on Hardware-Accelerated FlowMon Probes
The result's identifiers
Result code in IS VaVaI
<a href="https://www.isvavai.cz/riv?ss=detail&h=RIV%2F68407700%3A21230%2F09%3A00164573" target="_blank" >RIV/68407700:21230/09:00164573 - isvavai.cz</a>
Result on the web
—
DOI - Digital Object Identifier
—
Alternative languages
Result language
angličtina
Original language name
Collaborative Approach to Network Behavior Analysis Based on Hardware-Accelerated FlowMon Probes
Original language description
Network behavior analysis techniques are designed to detect intrusions and other undesirable behavior in computer networks by analyzing the tra_c statistics. We present an e_cient framework for integration of anomaly detection algorithms working on the identical input data. This framework is based on high-speed network tra_c acquisition subsystem and on trust modeling, a well-established set of techniques from the multi-agent system _eld. Trust-based integration of algorithms results in classi_cation with lower error rate, especially in terms of false positives. The presented system is suitable for both online and o_ine processing, and introduces a relatively low computational overhead compared to deployment of isolated anomaly detection algorithms.
Czech name
—
Czech description
—
Classification
Type
J<sub>x</sub> - Unclassified - Peer-reviewed scientific article (Jimp, Jsc and Jost)
CEP classification
JC - Computer hardware and software
OECD FORD branch
—
Result continuities
Project
—
Continuities
Z - Vyzkumny zamer (s odkazem do CEZ)
Others
Publication year
2009
Confidentiality
S - Úplné a pravdivé údaje o projektu nepodléhají ochraně podle zvláštních právních předpisů
Data specific for result type
Name of the periodical
International Journal of Electronic Security and Digital Forensics
ISSN
1751-911X
e-ISSN
—
Volume of the periodical
2
Issue of the periodical within the volume
1
Country of publishing house
CH - SWITZERLAND
Number of pages
14
Pages from-to
—
UT code for WoS article
—
EID of the result in the Scopus database
—