VisFlowConnect: Providing security situational awareness by visualizing network traffic flows

被引:0
|
作者
Yin, XX [1 ]
Yurcik, W [1 ]
Li, YF [1 ]
Lakkaraju, K [1 ]
Abad, C [1 ]
机构
[1] Univ Illinois, NCSA, Urbana, IL 61801 USA
关键词
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
We present the design and implementation of VisFlowConnect, a powerful new tool for visualizing network traffic flow dynamics for situational awareness. The visualization capability provided by VisFlowConnect allows an operator to assess the state of a large and complex network given an overall view of the entire network and filter/drill-down features with a friendly user interface that allows users to request more detailed information of interest such as specific protocol traffic flows. The value of VisFlowConnect specifically for security situational awareness is that any security event, with only a few minor exceptions, will be reflected as a traffic flow. Thus using VisFlowConnect a user will "see" all security events. We show several experiments in which abnormal behaviors with security implications have been discovered and analyzed using VisFlowConnect. These experiments demonstrate how VisFlowConnect can be a uniquely effective tool to assist security administrators in securing their computer networks.
引用
收藏
页码:601 / 607
页数:7
相关论文
共 50 条
  • [21] A New Method of Data Preprocessing for Network Security Situational Awareness
    Lu, Aiping
    Li, Jianping
    Yang, Lin
    [J]. 2010 2ND INTERNATIONAL WORKSHOP ON DATABASE TECHNOLOGY AND APPLICATIONS PROCEEDINGS (DBTA), 2010,
  • [22] Security and Business Situational Awareness
    Rieke, Roland
    Zhdanova, Maria
    Repp, Juergen
    [J]. CYBER SECURITY AND PRIVACY, CSP INNOVATION FORUM 2015, 2015, 530 : 103 - 115
  • [23] Cyber Security Situational Awareness
    Tianfield, Huaglory
    [J]. 2016 IEEE INTERNATIONAL CONFERENCE ON INTERNET OF THINGS (ITHINGS) AND IEEE GREEN COMPUTING AND COMMUNICATIONS (GREENCOM) AND IEEE CYBER, PHYSICAL AND SOCIAL COMPUTING (CPSCOM) AND IEEE SMART DATA (SMARTDATA), 2016, : 782 - 787
  • [24] Songs of cyberspace: an update on sonifications of network traffic to support situational awareness
    Ballora, Mark
    Giacobe, Nicklaus A.
    Hall, David L.
    [J]. MULTISENSOR, MULTISOURCE INFORMATION FUSION: ARCHITECTURES, ALGORITHMS, AND APPLICATIONS 2011, 2011, 8064
  • [25] Analysis framework of network security situational awareness and comparison of implementation methods
    Li, Yan
    Huang, Guang-qiu
    Wang, Chun-zi
    Li, Ying-chao
    [J]. EURASIP JOURNAL ON WIRELESS COMMUNICATIONS AND NETWORKING, 2019, 2019 (01)
  • [26] A Dashboard for Cyber Situational Awareness and Decision Support in Network Security Management
    Matta, Lukas
    Husak, Martin
    [J]. 2021 IFIP/IEEE INTERNATIONAL SYMPOSIUM ON INTEGRATED NETWORK MANAGEMENT (IM 2021), 2021, : 716 - 717
  • [27] Research on a Critical Link Discovery Method for Network Security Situational Awareness
    Yang, Guozheng
    Zhang, Yongheng
    Lu, Yuliang
    Xie, Yi
    Yu, Jiayi
    [J]. ENTROPY, 2024, 26 (04)
  • [28] PANEMOTO: Network visualization of security situational awareness through passive analysis
    Streilein, William
    Kratkiewicz, Kendra
    Sikorski, Michael
    Piwowarski, Keith
    Webster, Seth
    [J]. 2007 IEEE INFORMATION ASSURANCE WORKSHOP, 2007, : 284 - +
  • [29] Analysis framework of network security situational awareness and comparison of implementation methods
    Yan Li
    Guang-qiu Huang
    Chun-zi Wang
    Ying-chao Li
    [J]. EURASIP Journal on Wireless Communications and Networking, 2019
  • [30] PROVIDING SITUATIONAL AWARENESS FOR PIPELINE CONTROL OPERATIONS
    Butts, Jonathan
    Kleinhans, Hugo
    Chandia, Rodrigo
    Papa, Mauricio
    Shenoi, Sujeet
    [J]. CRITICAL INFRASTRUCTURE PROTECTION III, 2009, 311 : 97 - 111