ATMSim: a Hadoop and self-similarity-based simulator for collecting, detecting, measuring and analysing anomalous traffic
ATMSim: a Hadoop and self-similarity-based simulator for collecting, detecting, measuring and...
Jeong, Hae-Duck J.; Ryu, Myeong-Un; Ji, Min-Jun; Cho, You-Been; Ye, Sang-Kug; Lee, Jong-Suk R.
2017-01-01 00:00:00
Recent developments in information and communication networks as well as the popularity of smartphones have been contributing to a geometrical increase in internet traffic. In relation to this, this study aims to collect, detect, measure and analyse the DDoS attacks typical of increasing security incidents on internet and network attacks. To this end, a large volume of normal traffic, coming in through an internal LAN of a university, and anomalous traffic including DDoS attacks using an ATMSim analysis package operating on the basis of network flow information, was generated. The self-similarity estimation techniques were used to analyse the behaviour of the collected and generated normal and anomalous traffic. This information was then used to prove graphically and quantitatively that the analysis reveals a great difference between the normal traffic and the anomalous traffic in terms of self-similarity.
http://www.deepdyve.com/assets/images/DeepDyve-Logo-lg.pngInternational Journal of Web and Grid ServicesInderscience Publishershttp://www.deepdyve.com/lp/inderscience-publishers/atmsim-a-hadoop-and-self-similarity-based-simulator-for-collecting-RNyHgMLLPv
ATMSim: a Hadoop and self-similarity-based simulator for collecting, detecting, measuring and analysing anomalous traffic
Recent developments in information and communication networks as well as the popularity of smartphones have been contributing to a geometrical increase in internet traffic. In relation to this, this study aims to collect, detect, measure and analyse the DDoS attacks typical of increasing security incidents on internet and network attacks. To this end, a large volume of normal traffic, coming in through an internal LAN of a university, and anomalous traffic including DDoS attacks using an ATMSim analysis package operating on the basis of network flow information, was generated. The self-similarity estimation techniques were used to analyse the behaviour of the collected and generated normal and anomalous traffic. This information was then used to prove graphically and quantitatively that the analysis reveals a great difference between the normal traffic and the anomalous traffic in terms of self-similarity.
Journal
International Journal of Web and Grid Services
– Inderscience Publishers
To get new article updates from a journal on your personalized homepage, please log in first, or sign up for a DeepDyve account if you don’t already have one.
All DeepDyve websites use cookies to improve your online experience. They were placed on your computer when you launched this website. You can change your cookie settings through your browser.