DocumentCode
2972929
Title
Detecting network events via T-entropy
Author
Speidel, Ulrich ; Eimann, Raimund ; Brownlee, Nevil
Author_Institution
Univ. of Auckland, Auckland
fYear
2007
fDate
10-13 Dec. 2007
Firstpage
1
Lastpage
5
Abstract
The detection of significant events in heterogeneous networks, such as DDoS attacks, presents a challenge, both because of the diversity and unpredictable nature of events, and because the "normal" background traffic often varies quite naturally. Conventional approaches for detection of such events usually involve either monitoring for specific event signatures, or a statistical approach, which usually requires monitoring a large number of statistical features. In recent years, several papers have proposed the use of entropy- and complexity-based measures as a viable alternative. The present paper argues that T-entropy is a suitable measure in this sense and provides some experimental evidence in support.
Keywords
Internet; telecommunication security; telecommunication traffic; T-entropy; heterogeneous networks; network events detection; significant events detection; Computer crime; Computer science; Entropy; Event detection; Feature extraction; Frequency estimation; IP networks; Information rates; Monitoring; Telecommunication traffic;
fLanguage
English
Publisher
ieee
Conference_Titel
Information, Communications & Signal Processing, 2007 6th International Conference on
Conference_Location
Singapore
Print_ISBN
978-1-4244-0982-2
Electronic_ISBN
978-1-4244-0983-9
Type
conf
DOI
10.1109/ICICS.2007.4449642
Filename
4449642
Link To Document