• DocumentCode
    2732202
  • Title

    Multiple Markov Models for Detecting Internet Anomalies from BGP Data

  • Author

    Gardiner, Judith D.

  • Author_Institution
    Ohio Supercomput. Center, Columbus, OH, USA
  • fYear
    2009
  • fDate
    15-18 June 2009
  • Firstpage
    374
  • Lastpage
    377
  • Abstract
    This project explores a new mechanism for early detection of Internet disturbances, including both natural and malicious events. We used multiple hidden Markov models to analyze a type of global routing data called Border Gateway Protocol (BGP). Reasonably good discrimination was achieved between quiet periods and disturbances, and some discrimination was achieved between natural and malicious events. This project was exploratory in nature; no validation has been done on the results.
  • Keywords
    Internet; Markov processes; computer network security; routing protocols; Internet anomaly detection; Markov models; border gateway protocol; Grippers; Hidden Markov models; IEEE news; Internet; Markov processes; Routing protocols; Training;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    DoD High Performance Computing Modernization Program Users Group Conference (HPCMP-UGC), 2009
  • Conference_Location
    San Diego, CA
  • Print_ISBN
    978-1-4244-5768-7
  • Electronic_ISBN
    978-1-4244-5769-4
  • Type

    conf

  • DOI
    10.1109/HPCMP-UGC.2009.61
  • Filename
    5729492