Modeling network traffic for traffic matrix estimation and anomaly detection based on Bayesian network in cloud computing networks

被引:29
|
作者
Nie, Laisen [1 ]
Jiang, Dingde [1 ]
Lv, Zhihan [2 ]
机构
[1] Northeastern Univ, Sch Comp Sci & Engn, Shenyang 110819, Peoples R China
[2] UCL, Dept Comp Sci, London WC1E 6BT, England
基金
中国国家自然科学基金;
关键词
Cloud computing network; Network traffic modeling; Traffic matrix estimation; Anomaly detection; Bayesian network; Maximum a posteriori; Regularized optimization model; TOMOGRAPHY;
D O I
10.1007/s12243-016-0546-3
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
With the rapid development of a cloud computing network, the network security has been a terrible problem when it provides much more services and applications. Network traffic modeling and analysis is significantly crucial to detect some lawless activities such as DDoS, virus and worms, and so on. Meanwhile, it is a common approach for acquiring a traffic matrix, which can be used by network operators to carry out network management and planning. Although a great number of methods have been proposed to model and analyze the network traffic, it is still a remarkable challenge since the network traffic characterization has been tremendously changed, in particular, for a cloud computing network. Motivated by that, we analyze and model the statistical features of network traffic based on the Bayesian network in this paper. Furthermore, we propose an accurate network traffic estimation approach and an efficient anomaly detection approach, respectively. In detail, we design a Bayesian network structure to model the causal relationships between network traffic entries. Based on this Bayesian network model, we obtain a joint probability distribution of network traffic by the maximum a posteriori approach. Then, we estimate the network traffic in terms of a regularized optimization model. Meanwhile, we also perform anomaly detection based on the proposed Bayesian network structure. We finally discuss the effectiveness of the proposed method for traffic matrix estimation and anomaly detection by applying it to the Abilene and GAeANT networks.
引用
收藏
页码:297 / 305
页数:9
相关论文
共 50 条
  • [31] Application in Anomaly Detection of Network Traffic Based on Fractal Technology
    He, Yuemei
    Wang, Baomin
    Qiao, Dejun
    [J]. MECHANICAL ENGINEERING AND INTELLIGENT SYSTEMS, PTS 1 AND 2, 2012, 195-196 : 987 - 991
  • [32] Anomaly detection of traffic session based on graph neural network
    Du Peng
    Peng Cheng-Wei
    Xiang Peng
    Li Qing-Shan
    [J]. PROCEEDINGS OF THE 2022 INTERNATIONAL CONFERENCE ON CYBER SECURITY, CSW 2022, 2022, : 1 - 9
  • [33] Network Traffic Anomaly Detection Based on Maximum Entropy Model
    Qian Yaguan
    Wu Chunming
    Yang Qiang
    Wang Bin
    [J]. CHINESE JOURNAL OF ELECTRONICS, 2012, 21 (03) : 579 - 582
  • [34] Anomaly Detection of Network Traffic based on the Largest Lyapunov Exponent
    Xiong, Wei
    Hu, Hanping
    Yang, Yue
    Wang, Qian
    [J]. 2ND IEEE INTERNATIONAL CONFERENCE ON ADVANCED COMPUTER CONTROL (ICACC 2010), VOL. 4, 2010, : 581 - 585
  • [35] Unsupervised network traffic anomaly detection based on score iterations
    Ping, Guolou
    Zeng, Tingyu
    Ye, Xiaojun
    [J]. Qinghua Daxue Xuebao/Journal of Tsinghua University, 2022, 62 (05): : 819 - 824
  • [36] Detection of network traffic anomaly based on instantaneous parameters analysis
    Yao, Xingmiao
    Zhang, Peng
    Gao, Jie
    Hu, Guangmin
    [J]. 2006 10TH INTERNATIONAL CONFERENCE ON COMMUNICATION TECHNOLOGY, VOLS 1 AND 2, PROCEEDINGS, 2006, : 336 - +
  • [37] A Network Traffic anomaly Detection method based on CNN and XGBoost
    Niu, Dan
    Zhang, Jin
    Wang, Li
    Yan, Kaihong
    Fu, Tao
    Chen, Xisong
    [J]. 2020 CHINESE AUTOMATION CONGRESS (CAC 2020), 2020, : 5453 - 5457
  • [38] Network traffic anomaly detection based on deep learning: a review
    Zhang, Wenjing
    Lei, Xuemei
    [J]. INTERNATIONAL JOURNAL OF COMPUTATIONAL SCIENCE AND ENGINEERING, 2024, 27 (03) : 249 - 257
  • [39] Network Traffic Prediction and Anomaly Detection Based on ARFIMA Model
    Andrysiak, Tomasz
    Saganowski, Lukasz
    Choras, Michal
    Kozik, Rafal
    [J]. INTERNATIONAL JOINT CONFERENCE SOCO'14-CISIS'14-ICEUTE'14, 2014, 299 : 545 - 554
  • [40] HADOOP-BASED NETWORK TRAFFIC ANOMALY DETECTION IN BACKBONE
    Yu, Jishen
    Liu, Feng
    Zhou, Wenli
    Yu, Hua
    [J]. 2014 IEEE 3rd International Conference on Cloud Computing and Intelligence Systems (CCIS), 2014, : 140 - 145