全部 标题 作者
关键词 摘要

OALib Journal期刊
ISSN: 2333-9721
费用:99美元

查看量下载量

相关文章

更多...

基于流量监测的用户流量行为分析

Keywords: 用户流量行为,流量监测,特征集,特征选择

Full-Text   Cite this paper   Add to My Lib

Abstract:

为了解决网络用户流量行为描述维度过高,且在海量网络用户流量行为数据中分析单用户流量行为比较困难的问题,提出一种基于流量监测的异常流量时间定位和用户定位方法.首先,基于网络流量特性提出一个较为完备的特征集,对网络用户流量行为进行全面描述.其次,提出一种基于偏离距离的特征选择规则,选择出适合于海量网络用户流量行为分析的优化特征集,实现网络用户异常流量行为的快速时间定位.最后,在异常流量行为发生时刻对单用户流量行为进行分析,从而定位发生异常流量行为的用户.实验结果表明,本系统对网络用户异常流量行为具有较好的检测效果.

References

[1]  The University of Waikato.Traffic traces[EB/OL].[2004-05-07].http:∥wand.net.nz/wits/waikato/1/20040507-233830-64.php.
[2]  The University of Auckland.Traffic traces[EB/OL].[2003-12-02].http:∥wand.net.nz/wits/auck/8/20031202-090000.php.
[3]  CAIDA.CAIDA data[EB/OL].[2007-08-28].http:∥www.caida.org/data/.
[4]  Ripe Network Coordination Centre.Traffic traces[EB/OL].[2010-09-16].https:∥labs.ripe.net/datarepository/data-sets/nlanr-pma-data.
[5]  MIT Lincoln Laboratory.DARPA intrusion detection datasets[EB/OL].[2000-03-07].http:∥www.ll.mit.edu/mission/communications/cyber/CSTcorpora/ideval/data/2000data.html.
[6]  郑红艳,吴照林.用户行为异常检测模型[J].计算机系统应用,2009,18(8):1-3.ZHENG Hong-yan,WU Zhao-lin.User’s traffic behavior anomaly detection model[J].Journal of Computer Systems&Applications,2009,18(8):1-3.(in Chinese)
[7]  FARRAPOSO S,OWEZARSKI P,MONTEIO E.A multiscale tomographic algorithm for detecting and classifying traffic anomalies[C]∥IEEE ICC’07.Glasgow:IEEE,2007:363-370.
[8]  陈宁军,倪桂强,罗隽,等.基于正常行为聚类的卫星通信网异常检测方法[J].解放军理工大学学报,2008,9(5):497-501.CHEN Ning-jun,NI Gui-qiang,LUO Jun,et al.Method of detecting the satellite communication network abnormality based on the normal behavior of clustering[J].Journal of PLA University of Science and Technology,2008,9(5):497-501.(in Chinese)
[9]  DENNING D E.An intrusion-detection model[J].IEEE Transactions on Software Engineering,1987,SE-13:222-232.
[10]  AULD T,MOORE A W,GULL S F.Bayesian neural networks for internet traffic classification[J].IEEE Transactions on Neural Networks,2007,18(1):223-239.
[11]  MITCHELL T M,曾华军.机器学习[M].北京:机械工业出版社,2003:39-103.
[12]  MAWI Working Group.Traffic traces[EB/OL].[2006-04-25].http:∥mawi.wide.ad.jp/mawi/.

Full-Text

Contact Us

service@oalib.com

QQ:3279437679

WhatsApp +8615387084133