Toward Stream-Based IP Flow Analysis

Investor logo

Warning

This publication doesn't include Faculty of Economics and Administration. It includes Institute of Computer Science. Official publication website can be found on muni.cz.
Authors

JIRSÍK Tomáš ČERMÁK Milan TOVARŇÁK Daniel ČELEDA Pavel

Year of publication 2017
Type Article in Periodical
Magazine / Source IEEE Communications Magazine
MU Faculty or unit

Institute of Computer Science

Citation
Web https://ieeexplore.ieee.org/document/7981527/
Doi http://dx.doi.org/10.1109/MCOM.2017.1600972
Field Informatics
Keywords IP networks; Monitoring; Real-time systems; Data analysis; Computer security; Delays; Telecommunication traffic
Attached files
Description Analyzing IP flows is an essential part of traffic measurement for cyber security. Based on information from IP flows, it is possible to discover the majority of concurrent cyber threats in highspeed, large-scale networks. Some major prevailing challenges for IP flow analysis include, but are not limited to, analysis over a large volume of IP flows, scalability issues, and detecting cyber threats in real time. In this article, we discuss the transformation of present IP flow analysis into a stream-based approach to face current challenges in IP flow analysis. We examine the possible positive and negative impacts of the transformation and present examples of real-world applications, along with our recommendations. Our ongoing results show that stream-based IP flow analysis successfully meets the above-mentioned challenges and is suitable for achieving real-time network security analysis and situational awareness.
Related projects:

You are running an old browser version. We recommend updating your browser to its latest version.