• DocumentCode
    37376
  • Title

    Streaming Solutions for Fine-Grained Network Traffic Measurements and Analysis

  • Author

    Khan, Faraz ; Hosein, Nicholas ; Ghiasi, S. ; Chen-Nee Chuah ; Sharma, Parmanand

  • Author_Institution
    Dept. of Electr. & Comput. Eng., Univ. of California, Davis, Davis, CA, USA
  • Volume
    22
  • Issue
    2
  • fYear
    2014
  • fDate
    Apr-14
  • Firstpage
    377
  • Lastpage
    390
  • Abstract
    Online network traffic measurements and analysis is critical for detecting and preventing any real-time anomalies in the network. We propose, implement, and evaluate an online, adaptive measurement platform, which utilizes real-time traffic analysis results to refine subsequent traffic measurements. Central to our solution is the concept of Multi-Resolution Tiling (MRT), a heuristic approach that performs sequential analysis of traffic data to zoom into traffic subregions of interest. However, MRT is sensitive to transient traffic spikes. In this paper, we propose three novel traffic streaming algorithms that overcome the limitations of MRT and can cater to varying degrees of computational and storage budgets, detection latency, and accuracy of query response. We evaluate our streaming algorithms on a highly parallel and programmable hardware as well as a traditional software-based platforms. The algorithms demonstrate significant accuracy improvement over MRT in detecting anomalies consisting of synthetic hard-to-track elephant flows and global icebergs. Our proposed algorithms maintain the worst-case complexities of the MRT while incurring only a moderate increase in average resource utilization.
  • Keywords
    computer networks; real-time systems; telecommunication traffic; video streaming; MRT; fine grained network traffic analysis; fine grained network traffic measurements; multiresolution tiling; online network traffic analysis; online network traffic measurements; parallel hardware; programmable hardware; real-time anomalies; real-time traffic analysis; resource utilization; software based platforms; streaming solutions; traffic measurements; transient traffic spikes; Accuracy; Algorithm design and analysis; Complexity theory; Erbium; Frequency modulation; Hardware; Radar tracking; Classification algorithms; computer network management; intrusion detection;
  • fLanguage
    English
  • Journal_Title
    Networking, IEEE/ACM Transactions on
  • Publisher
    ieee
  • ISSN
    1063-6692
  • Type

    jour

  • DOI
    10.1109/TNET.2013.2263228
  • Filename
    6558847