Back to Search Start Over

NetFlow Monitoring and Cyberattack Detection Using Deep Learning With Ceph

Authors :
Chao-Tung Yang
Jung-Chun Liu
Endah Kristiani
Ming-Lun Liu
Ilsun You
Giovanni Pau
Source :
IEEE Access, Vol 8, Pp 7842-7850 (2020)
Publication Year :
2020
Publisher :
IEEE, 2020.

Abstract

Figuring the network's hidden abnormal behavior can reduce network vulnerability. This paper presents a detailed architecture in which the collected log data of the network can be processed and analyzed. We process and integrate on-campus network information from every router and store the integrated NetFlow log data. Ceph is used as an open-source distributed storage platform that offers high efficiency, high reliability, scalability, and preliminary preprocessing of raw data with Python, removing redundant areas and unification. In the subanalysis, we discover the anomaly event and absolute flow by three times of standard deviation rule. Keras has been used to classify in-time data collected via a cyber-attack and to construct an automatic identifier template through the Recurring Neural Network (RNN) test. The identification accuracy of the optimization model is around 98% in attack detection. Finally, in the MySQL server, the results of the real-time evaluation can be obtained, and the results of the assessment can be displayed via ECharts.

Details

Language :
English
ISSN :
21693536
Volume :
8
Database :
Directory of Open Access Journals
Journal :
IEEE Access
Publication Type :
Academic Journal
Accession number :
edsdoj.10b984bf4374e17981abc31a9961bef
Document Type :
article
Full Text :
https://doi.org/10.1109/ACCESS.2019.2963716