anomaly detection;
K-L divergence;
multiple time scale;
PCA;
INTRUSION DETECTION;
D O I:
10.1002/dac.2432
中图分类号:
TM [电工技术];
TN [电子技术、通信技术];
学科分类号:
0808 ;
0809 ;
摘要:
The increasing number of network attacks causes growing problems for network operators and users. Thus, detecting anomalous traffic is of primary interest in IP networks management. In this paper, we address the problem considering a method based on PCA for detecting network anomalies. In more detail, this paper presents a new technique that extends the state of the art in PCA-based anomaly detection. Indeed, by means of multi-scale analysis and Kullback-Leibler divergence, we are able to obtain great improvements with respect to the performance of the 'classical' approach. Moreover, we also introduce a method for identifying the flows responsible for an anomaly detected at the aggregated level. The performance analysis, presented in this paper, demonstrates the effectiveness of the proposed method. Copyright (C) 2012 John Wiley & Sons, Ltd.
机构:
Lab Signaux & Syst, F-91192 Gif Sur Yvette, France
Univ Paris Saclay, Univ Paris 11, Grp Elect Engn Paris, CNRS,Cent Supelec, F-91192 Gif Sur Yvette, FranceLab Signaux & Syst, F-91192 Gif Sur Yvette, France
Harmouche, Jinane
Delpha, Claude
论文数: 0引用数: 0
h-index: 0
机构:
Lab Signaux & Syst, F-91192 Gif Sur Yvette, FranceLab Signaux & Syst, F-91192 Gif Sur Yvette, France
Delpha, Claude
Diallo, Demba
论文数: 0引用数: 0
h-index: 0
机构:
Grp Elect Engn, Paris, FranceLab Signaux & Syst, F-91192 Gif Sur Yvette, France
Diallo, Demba
Le Bihan, Yann
论文数: 0引用数: 0
h-index: 0
机构:
Grp Elect Engn, Paris, FranceLab Signaux & Syst, F-91192 Gif Sur Yvette, France
机构:
Xi An Jiao Tong Univ, Ctr Informat Engn Sci Res, Xian 710049, Peoples R ChinaXi An Jiao Tong Univ, Ctr Informat Engn Sci Res, Xian 710049, Peoples R China
Wei, Zheng
Duan, Zhansheng
论文数: 0引用数: 0
h-index: 0
机构:
Xi An Jiao Tong Univ, Ctr Informat Engn Sci Res, Xian 710049, Peoples R ChinaXi An Jiao Tong Univ, Ctr Informat Engn Sci Res, Xian 710049, Peoples R China
Duan, Zhansheng
Hanebeck, Uwe D.
论文数: 0引用数: 0
h-index: 0
机构:
Karlsruhe Inst Technol, Intelligent Sensor Actuator Syst Lab, D-76131 Karlsruhe, GermanyXi An Jiao Tong Univ, Ctr Informat Engn Sci Res, Xian 710049, Peoples R China