首页    期刊浏览 2024年11月29日 星期五
登录注册

文章基本信息

  • 标题:A Dependable Monitoring Mechanism Combining Static and Dynamic Anomaly Detection for Network Systems
  • 本地全文:下载
  • 作者:GuiPing Wang ; ShuYu Chen ; Zhen Zhou
  • 期刊名称:International Journal of Future Generation Communication and Networking
  • 印刷版ISSN:2233-7857
  • 出版年度:2014
  • 卷号:7
  • 期号:1
  • 页码:1-18
  • 出版社:SERSC
  • 摘要:Due to abuse by insiders or penetration by outsiders, network systems usually suffer various security issues. In order to achieve high dependable and low cost monitoring, this paper proposes a dependable monitoring mechanism combining static threshold-based and dynamic anomaly detection. Firstly, the performance metrics of host and network are collected through different methods. In static threshold-based detection phase, the secondary metrics are combined to several group items. When any group item exceeds its threshold, dynamic detection methods are adopt to further detect anomaly. In dynamic detection phase, PCA, joint Gaussian distribution, and Bayesian classification are combined to achieve low cost and efficient anomaly detection. Experimental results in a campus-wide network system show that the proposed dependable monitoring mechanism achieves low false negative (FN) rate and low false positive (FP) rate. The proposed monitoring mechanism outperforms PCA & Bayesian, and grouping detection methods.
  • 关键词:Dependable Monitoring; Anomaly Detection; Data Acquisition; PCA; Bayesian Classification
国家哲学社会科学文献中心版权所有