{"title":"A Distributed Approach of Intelligent Network Traffic Monitoring and Anomaly Detection Application","authors":"M. Syukur, M. Pasha, S. Ramadass, R. Budiarto","doi":"10.1109/DFMA.2006.296910","DOIUrl":null,"url":null,"abstract":"Monitoring a large corporate network connecting thousands of computers which generate billions of packets everyday is a challenge and difficult task! This paper proposes a distributed approach of intelligent network traffic monitoring and anomaly detection system. By utilizing a distributed client-server scheme, our proposed system can monitor multiple network segments and distribute the workload among the intelligent clients to monitor and detect anomaly. In this way, the complexity of having analyzing enormous traffic at once can be reduced. The server's primary task is only to manage all different profiles from different network segment used by the intelligent clients in their respective segments","PeriodicalId":333315,"journal":{"name":"The 2nd International Conference on Distributed Frameworks for Multimedia Applications","volume":"17 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2006-05-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"The 2nd International Conference on Distributed Frameworks for Multimedia Applications","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/DFMA.2006.296910","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0
Abstract
Monitoring a large corporate network connecting thousands of computers which generate billions of packets everyday is a challenge and difficult task! This paper proposes a distributed approach of intelligent network traffic monitoring and anomaly detection system. By utilizing a distributed client-server scheme, our proposed system can monitor multiple network segments and distribute the workload among the intelligent clients to monitor and detect anomaly. In this way, the complexity of having analyzing enormous traffic at once can be reduced. The server's primary task is only to manage all different profiles from different network segment used by the intelligent clients in their respective segments