Open Access Open Access  Restricted Access Subscription or Fee Access

Detection of High-speed Network Flow Characteristics of the Multi-dimensional Entropy

Jinzhuo Liu, Chen Chu

Abstract



To improve the efficiency of detecting flow anomaly, and solve the problem of the inefficient traditional flow analysis method and the weak anomaly detection capability, the multidimensional entropy-based joint index and the sliding window-based burst detection algorithm of entropy flow are combined in the detection of network anomaly of backbone routers. Moreover, these indexes should be classified through the relevancy analysis of entropies of all the indexes. And a summary should be drawn on the anomaly detection scope of each index according to the types of anomaly which are already known. This paper successfully excludes the index of high redundancy through experiment, and classify flow anomaly into four types which can be identified by the joint index. The experiment proves that this anomaly detection program is more practical, accurate and efficient than the traditional flow analysis method in terms of judging the types of anomaly.

Keywords


Multidimensional entropy, sliding window-based burst detection algorithm of entropy flow, network anomaly detection, relevancy analysis.

Full Text:

PDF


Disclaimer/Regarding indexing issue:

We have provided the online access of all issues and papers to the indexing agencies (as given on journal web site). It’s depend on indexing agencies when, how and what manner they can index or not. Hence, we like to inform that on the basis of earlier indexing, we can’t predict the today or future indexing policy of third party (i.e. indexing agencies) as they have right to discontinue any journal at any time without prior information to the journal. So, please neither sends any question nor expects any answer from us on the behalf of third party i.e. indexing agencies.Hence, we will not issue any certificate or letter for indexing issue. Our role is just to provide the online access to them. So we do properly this and one can visit indexing agencies website to get the authentic information.