Distributed Network Monitoring and Anomaly Detection as a Grid Application
نویسندگان
چکیده
In this paper an anomaly detection system based on Grid middleware that supports the efficient, scalable and secure monitoring of multiple instruments and sensors, is proposed and investigated. The Grid provides the means to control the sensors and gather information with security and reliability. The system includes a Decision Support Service that fuses multi-metric data from heterogeneous sensors to produce a view of the network state. The proposed fusion algorithm is based on the application of Principal Component Analysis on multi-metric data, and provides an efficient way of taking into account the combined effect of the correlated observed data, for anomaly detection purposes. The performance and operational effectiveness of our proposed anomaly detection approach is evaluated via modeling and simulation, and is compared against the corresponding techniques that are based on the singlemetric analysis.
منابع مشابه
Moving dispersion method for statistical anomaly detection in intrusion detection systems
A unified method for statistical anomaly detection in intrusion detection systems is theoretically introduced. It is based on estimating a dispersion measure of numerical or symbolic data on successive moving windows in time and finding the times when a relative change of the dispersion measure is significant. Appropriate dispersion measures, relative differences, moving windows, as well as tec...
متن کاملAnomaly-based Web Attack Detection: The Application of Deep Neural Network Seq2Seq With Attention Mechanism
Today, the use of the Internet and Internet sites has been an integrated part of the people’s lives, and most activities and important data are in the Internet websites. Thus, attempts to intrude into these websites have grown exponentially. Intrusion detection systems (IDS) of web attacks are an approach to protect users. But, these systems are suffering from such drawbacks as low accuracy in ...
متن کاملF-STONE: A Fast Real-Time DDOS Attack Detection Method Using an Improved Historical Memory Management
Distributed Denial of Service (DDoS) is a common attack in recent years that can deplete the bandwidth of victim nodes by flooding packets. Based on the type and quantity of traffic used for the attack and the exploited vulnerability of the target, DDoS attacks are grouped into three categories as Volumetric attacks, Protocol attacks and Application attacks. The volumetric attack, which the pro...
متن کاملRadial Basis Neural Network Based Islanding Detection in Distributed Generation
This article presents a Radial Basis Neural Network (RBNN) based islanding detection technique. Islanding detection and prevention is a mandatory requirement for grid-connected distributed generation (DG) systems. Several methods based on passive and active detection scheme have been proposed. While passive schemes have a large non detection zone (NDZ), concern has been raised on active method ...
متن کاملIntegrating Intelligent Anomaly Detection Agents into Distributed Monitoring Systems
High-performance computing clusters have become critical computing resources in many sensitive and/or economically important areas. Anomalies in such systems can be caused by activities such as user misbehavior, intrusions, corrupted data, deadlocks, and failure of cluster components. Effective detection of these anomalies has become a high priority because of the need to guarantee security, pr...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2005