期刊文献+

网络异常的检测与诊断方法 被引量:5

Detection and Diagnosis Methods for Network Anomaly
下载PDF
导出
摘要 为提高网络的可用性和可靠性 ,当网络出现异常时 ,首先 ,必须尽快地发现异常 (即异常检测 ) ,发出警报 ,这样可以提前采取措施以避免或减轻对服务的影响 ,其次 ,必须从大量的警报信息中作出正确的诊断 ,提取出真正的、非冗余的信息 ,以便找出问题的根源 (即警报关联 ) ,从而解决问题 ,改善服务质量 .本文就网络异常检测和警报关联两个方面进行总结和分析 ,回顾了该领域的主要研究工作 。 To improve its availability and dependability, when anomaly occurs in network, firstly, it must be detected as soon as possible (i.e., anomaly detection), then the alarms can be sent out, so the correcting actions can be taken to avoid impact or alleviate loss. Secondly, the numerous alarms must be correlated and the true and non redundant information may be extracted, which is helpful to find the real problem and resolve it, so the quality of service may be improved. In this paper, summarizations and analyses on anomaly detection and alarm correlation was made, the research work in this field was reviewed. Finally, a new method for anomaly detection is proposed.
作者 邹柏贤
出处 《小型微型计算机系统》 CSCD 北大核心 2004年第4期506-510,共5页 Journal of Chinese Computer Systems
基金 国家重大基金项目资助 ( 90 10 40 0 6)资助 国家 863计划 ( 2 0 0 1AA112 13 5 2 0 0 1AA112 0 91)资助
关键词 网络异常 异常检测 警报关联 network anomaly anomaly detection alarm correlation
  • 相关文献

参考文献21

  • 1[1]Roy A. Maxion, Anomaly detection for diagnosis[C]. In 20th Int'l symp. Fault-Tolerant Computing (FTCS-20), 1990,20~27
  • 2[2]Roy A. Maxion and Frank E. Feather, A case study of ethernet anomalies in a distributed computing environment[J]. IEEE Transaction on Reliability, October.1990,39(4).
  • 3[3]Frank Feather, Dan Siewiorek and Roy Maxion, Fault detection in an ethernet network using anomaly signature matching[C]. ACM SIGCOMM'93, 1993,23(4).
  • 4[4]Lawrence L, Ho, David J. Cavuto, Symeon Papavassiliou, and Anthony G. Zawadzki, Adaptive and automated detection of service anomalies in transaction-oriented WAN's: network analysis, algorithms, implementation, and deployment[J]. IEEE Journal of Seletected Areas in Communications,May.2000,18(5).
  • 5[5]Jake D. Butlag, Aberrant behavior detection in time series for network monitoring[EB/OL]. http://www.usenix.org/events/lisa2000/full_papers/brutlag/brutlag_html.
  • 6[6]F. Garcia-Ayllon, A. Santos, J. Rodriguez-Molowny, and F. Fernandez, Characterization of network anomalies and their detection[Z]. CSELT-Telefonica Joint Group on NTM, Working Paper, July 1994.
  • 7[7]Marina Thottan and Chuanyi Ji, Statistical detection of enterprise network problem[J]. Journal of Network and Systems Management,1999,7(1).
  • 8[8]Amy Ward, Peter Glynn and Kathy Richardson, Internet service performance failure detection. Performance evaluation[EB/OL].1998,26(3):38~44.
  • 9[9]Diheng Qu, Brian M. Vetter, and Y. Frank Jou, Statistical anomaly detection for link-state routing protocols[C]. Proceedings of 1998 Internatinal Conference on Network Protocols, October 13~16, 1998, Austin, TX[EB/OL]. http://www.nmsl.cs.ucsb.edu/~ksarac/icnp/1998/papers/1998~7.pdf.
  • 10[10]Alarcon-Aquio V.and J. A. Barria, Anomaly detection in communication networks using wavelet[J]. IEE Proceeding-Communication, December 2001, 148(6).

同被引文献21

引证文献5

二级引证文献41

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部