CEFF: An Efficient Approach for Traffic Anomaly Detection and Classification

被引:0
|
作者
Tian, Geng [1 ,2 ]
Wang, Zhiliang [1 ,3 ]
Yin, Xia [1 ,2 ]
Chen, Jun [1 ,4 ]
Shi, Xingang [1 ,3 ]
Zhou, Chao [5 ]
Li, Zimu [1 ,3 ]
Guo, Yingya [1 ,2 ]
机构
[1] Tsinghua Univ, Tsinghua Natl Lab Informat Sci & Technol TNList, Beijing, Peoples R China
[2] Tsinghua Univ, Dept Comp Sci & Technol, Beijing, Peoples R China
[3] Tsinghua Univ, Inst Network Sci & Cyberspace, Beijing 100084, Peoples R China
[4] China Telecom, Beijing, Peoples R China
[5] Cisco Syst Inc, San Jose, CA USA
基金
国家高技术研究发展计划(863计划);
关键词
Frequent flow features; Traffic anomaly detection; Traffic anomaly classification; Spark;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Nowadays, there are two major challenges to detect traffic anomalies in a large scale network. One is how to handle huge amounts of traffic data when we detect traffic anomalies in a network, and the other is how to carry out fast and detailed detection and classification. To address these two challenges, we propose a Change based Effective Frequent flow Features approach (CEFF), which can quickly obtain the anomaly detection and classification results by scanning the flow data only once. We implement CEFF for both offline and online detection and classification in Spark, a popular big data processing platform. Besides, we evaluate CEFF using China Telecom NetFlow format data in experiments, and make comparisons between CEFF and Shannon entropy based method, which has been proved to be effective for traffic anomaly detection. The experiment results show that CEFF has excellent performance in traffic anomaly detection and classification.
引用
收藏
页码:779 / 786
页数:8
相关论文
共 50 条
  • [1] An Efficient Approach for Anomaly Detection in Traffic Videos
    Doshi, Keval
    Yilmaz, Yasin
    [J]. 2021 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION WORKSHOPS, CVPRW 2021, 2021, : 4231 - 4239
  • [2] Network Traffic Classification for Anomaly Detection Fuzzy Clustering Based Approach
    Asmuss, Julija
    Lauks, Gunars
    [J]. 2015 12TH INTERNATIONAL CONFERENCE ON FUZZY SYSTEMS AND KNOWLEDGE DISCOVERY (FSKD), 2015, : 313 - 318
  • [3] Efficient Approach for Anomaly Detection in Internet of Things Traffic Using Deep Learning
    Imtiaz, Syed Ibrahim
    Khan, Liaqat Ali
    Almadhor, Ahmad S.
    Abbas, Sidra
    Alsubai, Shtwai
    Gregus, Michal
    Jalil, Zunera
    [J]. WIRELESS COMMUNICATIONS & MOBILE COMPUTING, 2022, 2022
  • [4] An NMF-based traffic classification approach towards anomaly detection for Massive Sensors
    Nagata, Akira
    Kotera, Kohei
    Nakamura, Katsuichi
    Hori, Yoshiaki
    [J]. 2014 INTERNATIONAL CONFERENCE ON INTELLIGENT NETWORKING AND COLLABORATIVE SYSTEMS (INCOS), 2014, : 396 - 399
  • [5] Securing the Metaverse: Traffic Application Classification and Anomaly Detection
    Murgai, Vishal
    Lolabhattu, Venkata Rama Raju
    Stimpson, Roxy
    Tripathi, Eishita
    Chickala, Shiva
    [J]. PROCEEDINGS 2024 IEEE 25TH INTERNATIONAL SYMPOSIUM ON A WORLD OF WIRELESS, MOBILE AND MULTIMEDIA NETWORKS, WOWMOM 2024, 2024, : 111 - 117
  • [6] Approach to anomaly traffic detection in a local network
    Wang, Xiu-Ying
    Xiao, Li-Zhong
    Shao, Zhi-Qing
    [J]. Journal of Donghua University (English Edition), 2009, 26 (06) : 656 - 661
  • [7] Approach to Anomaly Traffic Detection in a Local Network
    王秀英
    肖立中
    邵志清
    [J]. Journal of Donghua University(English Edition), 2009, 26 (06) : 656 - 661
  • [8] An Efficient Approach for Network Traffic Classification
    Lal, Shankar
    Kulkarni, Parag
    Singh, Upasna
    Singh, Amarjit
    [J]. 2013 IEEE INTERNATIONAL CONFERENCE ON COMPUTATIONAL INTELLIGENCE AND COMPUTING RESEARCH (ICCIC), 2013, : 313 - 317
  • [9] ATLANTIC: A Framework for Anomaly Traffic Detection, Classification, and Mitigation in SDN
    da Silva, Anderson Santos
    Wickboldt, Juliano Araujo
    Granville, Lisandro Zambenedetti
    Schaeffer-Filho, Alberto
    [J]. NOMS 2016 - 2016 IEEE/IFIP NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM, 2016, : 27 - 35
  • [10] A large deviations approach to statistical traffic anomaly detection
    Paschalidis, Ioannis Ch.
    Smaragdakis, Georgios
    [J]. PROCEEDINGS OF THE 45TH IEEE CONFERENCE ON DECISION AND CONTROL, VOLS 1-14, 2006, : 1901 - +