Toward Real-time Network-wide Cyber Situational Awareness
Identifikátory výsledku
Kód výsledku v IS VaVaI
<a href="https://www.isvavai.cz/riv?ss=detail&h=RIV%2F00216224%3A14610%2F18%3A00106893" target="_blank" >RIV/00216224:14610/18:00106893 - isvavai.cz</a>
Výsledek na webu
<a href="http://dx.doi.org/10.1109/NOMS.2018.8406166" target="_blank" >http://dx.doi.org/10.1109/NOMS.2018.8406166</a>
DOI - Digital Object Identifier
<a href="http://dx.doi.org/10.1109/NOMS.2018.8406166" target="_blank" >10.1109/NOMS.2018.8406166</a>
Alternativní jazyky
Jazyk výsledku
angličtina
Název v původním jazyce
Toward Real-time Network-wide Cyber Situational Awareness
Popis výsledku v původním jazyce
In today's complex computer networks, we are constantly facing a risk of data loss, system compromise, or intellectual property theft. The complexity of the networks hinders their effective defense. A Network-wide Cyber Situational Awareness (NwCSA) has been introduced to assist a network security administrator with network security. The concept, however, faces several challenges that hinder an efficient application of the NwCSA in a real-world environment. The challenges include the overload of raw data, low speed of reaction, and a lack of context and unified view on a network. In this paper, we present a novel framework that faces above mentioned challenges. The framework leverages a distributed data stream processing system and methods for real-time big data processing. The framework is evaluated with respect to stated requirements on systems for NwCSA. Moreover, we present a prototype framework implementation and provide lessons learned from its real-world deployment.
Název v anglickém jazyce
Toward Real-time Network-wide Cyber Situational Awareness
Popis výsledku anglicky
In today's complex computer networks, we are constantly facing a risk of data loss, system compromise, or intellectual property theft. The complexity of the networks hinders their effective defense. A Network-wide Cyber Situational Awareness (NwCSA) has been introduced to assist a network security administrator with network security. The concept, however, faces several challenges that hinder an efficient application of the NwCSA in a real-world environment. The challenges include the overload of raw data, low speed of reaction, and a lack of context and unified view on a network. In this paper, we present a novel framework that faces above mentioned challenges. The framework leverages a distributed data stream processing system and methods for real-time big data processing. The framework is evaluated with respect to stated requirements on systems for NwCSA. Moreover, we present a prototype framework implementation and provide lessons learned from its real-world deployment.
Klasifikace
Druh
D - Stať ve sborníku
CEP obor
—
OECD FORD obor
10201 - Computer sciences, information science, bioinformathics (hardware development to be 2.2, social aspect to be 5.8)
Návaznosti výsledku
Projekt
<a href="/cs/project/VI20162019014" target="_blank" >VI20162019014: Simulace, detekce a potlačení kybernetických hrozeb ohrožujících kritickou infrastrukturu</a><br>
Návaznosti
P - Projekt vyzkumu a vyvoje financovany z verejnych zdroju (s odkazem do CEP)
Ostatní
Rok uplatnění
2018
Kód důvěrnosti údajů
S - Úplné a pravdivé údaje o projektu nepodléhají ochraně podle zvláštních právních předpisů
Údaje specifické pro druh výsledku
Název statě ve sborníku
NOMS 2018 - 2018 IEEE/IFIP Network Operations and Management Symposium
ISBN
9781538634165
ISSN
—
e-ISSN
—
Počet stran výsledku
7
Strana od-do
1-7
Název nakladatele
IEEE
Místo vydání
Taipei, Taiwan
Místo konání akce
Taipei, Taiwan
Datum konání akce
1. 1. 2018
Typ akce podle státní příslušnosti
WRD - Celosvětová akce
Kód UT WoS článku
—