DocumentCode
3661252
Title
A federated network online network traffics analysis engine for cybersecurity
Author
Shaoning Pang; Yiming Peng;Tao Ban;Daisuke Inoue;Abdolhossein Sarrafzadeh
Author_Institution
Department of computing, Unitec Institute of Technology, New Zealand
fYear
2015
fDate
7/1/2015 12:00:00 AM
Firstpage
1
Lastpage
8
Abstract
Agent-oriented techniques are being increasingly used in a range of networking security applications. In this paper, we introduce FNTAE, a Federated Network Traffic Analysis Engine for real-time network intrusion detection. In FNTAE, each analysis engine is powered with an incremental learning agent, for capturing attack signatures in real-time, so that the abnormal traffics resulting from the new attacks are detected as soon as they occur. Owing to the effective knowledge sharing among multiple analysis engines, the integrated engine is theoretically guaranteed performing more effective than a centralized analysis system. We deployed and tested FNTAE in a real world network environment. The results demonstrate that FNTAE is a promising solution to improving system security through the identification of malicious network traffic.
Keywords
"Engines","Merging","Computer security","IP networks","Artificial neural networks","Switches"
Publisher
ieee
Conference_Titel
Neural Networks (IJCNN), 2015 International Joint Conference on
Electronic_ISBN
2161-4407
Type
conf
DOI
10.1109/IJCNN.2015.7280563
Filename
7280563
Link To Document