Supercharge Your Innovation With Domain-Expert AI Agents!

Network abnormal flow detection method and system based on time sequence analysis technology

A network flow and flow detection technology, applied in the field of network flow data research, can solve problems such as difficulty in guaranteeing detection efficiency, large data scale, and flow fluctuations

Active Publication Date: 2021-04-20
SHANDONG UNIV +1
View PDF4 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

For example, when malicious network traffic occurs, it often causes obvious traffic fluctuations
In addition, the current abnormal network traffic detection often requires manual intervention to extract traffic data features. Because the types and compositions of network traffic are relatively complex, feature extraction is not a simple task, and it is easy to increase manual computing overhead.
Finally, network traffic data is continuously generated, and the data scale is large. It is difficult to guarantee the detection efficiency and is often time-consuming to perform detection and analysis directly on the original data.

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Network abnormal flow detection method and system based on time sequence analysis technology
  • Network abnormal flow detection method and system based on time sequence analysis technology
  • Network abnormal flow detection method and system based on time sequence analysis technology

Examples

Experimental program
Comparison scheme
Effect test

Embodiment 1

[0078] A method for detecting network abnormal traffic based on timing analysis technology, such as figure 1 , figure 2 shown, including the following steps:

[0079] Step 1: The device to be detected is connected to the data center where the Oracle database is installed, and the data center opens the network traffic data view to the method involved in the present invention. The method of the present invention collects traffic data from the network traffic data view of the data center by timing synchronization tasks and key information, the data view fields are shown in Table 3:

[0080] Table 3: Data View Fields

[0081]

[0082]

[0083] Step 2: Data preprocessing:

[0084] Since the network traffic data interfaces provided by various manufacturers are different, in order to reduce the complexity of network traffic anomaly detection and analysis data processing, it is necessary to preprocess the original network traffic data collected in step 1. Taking the standar...

Embodiment 2

[0096] A network abnormal traffic detection system based on timing analysis technology, such as Figure 8 As shown, it includes a traffic collection module, a traffic preprocessing module, a detection mode management module, a detection policy management module, an anomaly detection module and an anomaly visualization module.

[0097] The input end of the flow collection module of this embodiment is connected to the data center where the Oralce database is installed, the input end of the flow collection module is connected to the data center network, and the output end of the flow collection module is connected to the flow preprocessing module. The processing module is connected to the detection mode management module and the detection strategy management module respectively, the detection mode management module is connected to the abnormality detection module, the detection strategy management module is connected to the abnormality detection module, and the abnormality detecti...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention relates to a network abnormal flow detection method and system based on a time sequence analysis technology, belongs to the technical field of network flow data research, and comprises the following steps: collecting computer equipment network flow data stored in a data center by adopting a timing synchronization task mode; preprocessing the collected original network flow data to reduce the complexity of network flow anomaly detection and analysis data processing; storing the preprocessed network flow data into a database; performing abnormal flow detection on the network flow data; and storing the abnormal traffic detected in the step 4 into an abnormal traffic feature library. According to the invention, efficient and accurate anomaly detection and analysis of the network flow can be realized.

Description

technical field [0001] The invention relates to a method and system for detecting abnormal network traffic based on timing analysis technology, and belongs to the technical field of network traffic data research. Background technique [0002] With the rapid development of informatization, network security has always been the top priority in the process of information development. Without network security, there will be no national security. With the development of information technology, the network architecture and deployment environment are becoming more and more complex, and the operation of network services is faced with various threats from all parties, such as distributed denial of service attacks (DDoS), which mainly use A large number of requests consume normal bandwidth and resources, so that the server cannot provide services normally. Generally speaking, when network services are attacked or service interruptions occur, the trend of network traffic data will fluc...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
IPC IPC(8): G06F16/2458G06F16/248G06F16/22G06F16/25
CPCY02D30/50
Inventor 展鹏许浩然
Owner SHANDONG UNIV
Features
  • R&D
  • Intellectual Property
  • Life Sciences
  • Materials
  • Tech Scout
Why Patsnap Eureka
  • Unparalleled Data Quality
  • Higher Quality Content
  • 60% Fewer Hallucinations
Social media
Patsnap Eureka Blog
Learn More