Detector of DoS Attacks via Network Flow Analysis
The result's identifiers
Result code in IS VaVaI
<a href="https://www.isvavai.cz/riv?ss=detail&h=RIV%2F68407700%3A21240%2F12%3A00197464" target="_blank" >RIV/68407700:21240/12:00197464 - isvavai.cz</a>
Result on the web
<a href="http://users.fit.cvut.cz/blazerud/students/2012/MatejPlch/" target="_blank" >http://users.fit.cvut.cz/blazerud/students/2012/MatejPlch/</a>
DOI - Digital Object Identifier
—
Alternative languages
Result language
angličtina
Original language name
Detector of DoS Attacks via Network Flow Analysis
Original language description
An application for monitoring high-speed networks using the NetFlow protocol and detection of DoS attacks by searching for anomalies in the trends of network traffic. It analyzes types of attacks that manifest themselves by a peak in network traffic, anduses statistical methods that detect this abrupt growth. The detector combines application logic for detection in Ruby code with the use of an existing high-performance tool nfdump for NetFlow processing that is written in C.
Czech name
—
Czech description
—
Classification
Type
R - Software
CEP classification
IN - Informatics
OECD FORD branch
—
Result continuities
Project
—
Continuities
S - Specificky vyzkum na vysokych skolach<br>I - Institucionalni podpora na dlouhodoby koncepcni rozvoj vyzkumne organizace
Others
Publication year
2012
Confidentiality
S - Úplné a pravdivé údaje o projektu nepodléhají ochraně podle zvláštních právních předpisů
Data specific for result type
Internal product ID
DetectorDDoS-120501
Technical parameters
Rudolf Blažek, rblazek@fit.cvut.cz
Economical parameters
Úspora 10000 za software pro detekci DoS útoků
Owner IČO
68407700
Owner name
ČVUT FIT