Title :
Detecting network events via T-entropy
Author :
Speidel, Ulrich ; Eimann, Raimund ; Brownlee, Nevil
Author_Institution :
Univ. of Auckland, Auckland
Abstract :
The detection of significant events in heterogeneous networks, such as DDoS attacks, presents a challenge, both because of the diversity and unpredictable nature of events, and because the "normal" background traffic often varies quite naturally. Conventional approaches for detection of such events usually involve either monitoring for specific event signatures, or a statistical approach, which usually requires monitoring a large number of statistical features. In recent years, several papers have proposed the use of entropy- and complexity-based measures as a viable alternative. The present paper argues that T-entropy is a suitable measure in this sense and provides some experimental evidence in support.
Keywords :
Internet; telecommunication security; telecommunication traffic; T-entropy; heterogeneous networks; network events detection; significant events detection; Computer crime; Computer science; Entropy; Event detection; Feature extraction; Frequency estimation; IP networks; Information rates; Monitoring; Telecommunication traffic;
Conference_Titel :
Information, Communications & Signal Processing, 2007 6th International Conference on
Conference_Location :
Singapore
Print_ISBN :
978-1-4244-0982-2
Electronic_ISBN :
978-1-4244-0983-9
DOI :
10.1109/ICICS.2007.4449642