Publication Details

Advanced Security Network Metrics

HOMOLIAK Ivan, BARABAS Maroš, CHMELAŘ Petr, DROZD Michal and HANÁČEK Petr. Advanced Security Network Metrics. Emerging Trends in ICT Security. Waltham: Elsevier Science, 2013, pp. 187-202. ISBN 978-0-12-411474-6. Available from: http://www.sciencedirect.com/science/article/pii/B9780124114746000128
Czech title
Pokročilé bezpečnostní síťové metriky
Type
book chapter
Language
english
Authors
URL
Keywords

behavioral signature, IDS, network metrics, network malware

Abstract

The main objective of this work was to present the results achieved by the AIPS system in the process of network attacks detection, which were compared with the state-of-the-art work of A. Moore. The publication also mentions a formal description of the metrics extraction process with respect to the communication context.

Annotation

In this paper we propose a method for the extraction of data from network flow and a contextual separation of partial connections using a set of network metrics that create a signature defining the connection behavior. We begin with the definition of the input dataset of captured communication and the process of extraction metrics from separated connections. Then we define the set of metrics included in the final behavioral signature. The second part of the chapter describes experiments performed with a state-of-the-art set of network metrics with comparison to our proposed experimental set. The chapter concludes with the results of our experiments.

Published
2013
Pages
187-202
Book
Emerging Trends in ICT Security
ISBN
978-0-12-411474-6
Publisher
Elsevier Science
Place
Waltham, US
DOI
BibTeX
@INBOOK{FITPUB10398,
   author = "Ivan Homoliak and Maro\v{s} Barabas and Petr Chmela\v{r} and Michal Drozd and Petr Han\'{a}\v{c}ek",
   title = "Advanced Security Network Metrics",
   pages = "187--202",
   booktitle = "Emerging Trends in ICT Security",
   year = 2013,
   location = "Waltham, US",
   publisher = "Elsevier Science",
   ISBN = "978-0-12-411474-6",
   doi = "10.1016/B978-0-12-411474-6.00012-8",
   language = "english",
   url = "https://www.fit.vut.cz/research/publication/10398"
}
Back to top