首页 | 本学科首页   官方微博 | 高级检索  
     检索      

基于分形理论的网络流量异常检测技术
引用本文:王建设,徐忠根.基于分形理论的网络流量异常检测技术[J].科学技术与工程,2018,18(14).
作者姓名:王建设  徐忠根
作者单位:商丘工学院信息与电子工程学院
摘    要:传统网络流量异常检测技术不能适应网络流量的复杂性,异常检测精度低,不能保证实时性,为此,提出一种新的基于分形理论的网络流量异常检测技术。通过FIR滤波方法对流量的时间序列进行预处理。采用Schwarz信息准则对网络流量异常检测问题进行处理,估测网络流量异常点数量与位置。采用R/S分析法求出自相似指数Hurst值,依据Hurst值对网络流量时间序列的分形特征进行分析。引入滑动窗口完成多网络流量异常点的检测,在检测异常点处对流量进行分形处理,依据自相似指数计算过程获取异常点间的流量自相似指数值,保存异常点之后的流量,为下一个流量异常点的检测提供依据。实验结果表明,所提技术实现过程简单,网络流量异常检测精度高,保证了实时性。

关 键 词:分形理论  网络流量  异常  检测  技术
收稿时间:2017/11/13 0:00:00
修稿时间:2018/1/2 0:00:00

Network traffic anomaly detection technology based on Fractal Theory
WANG Jianshe and XU Zhonggen.Network traffic anomaly detection technology based on Fractal Theory[J].Science Technology and Engineering,2018,18(14).
Authors:WANG Jianshe and XU Zhonggen
Institution:School of Information and Electronic Engineering,Shangqiu Institute of Technology,School of Information and Electronic Engineering,Shangqiu Institute of Technology
Abstract:The traditional network traffic anomaly detection technology can not adapt to the complexity of the network traffic anomaly detection accuracy is low, can not guarantee real-time, therefore, put forward a new kind of network traffic anomaly detection technology based on fractal theory. FIR filtering method is used to preprocess the time series of traffic flow. Schwarz information criterion is used to deal with the network traffic anomaly detection problem, and the number and location of network traffic anomaly points are estimated. The Hurst value of self similarity index was calculated by R/S analysis method, and the fractal characteristics of network flow time series were analyzed based on Hurst value. The introduction of sliding window detection of multi network traffic anomaly detection of abnormal point, in point of traffic based on Fractal processing, self similarity index calculation process to obtain the abnormal point between traffic self similarity index, then save abnormal traffic, provide the basis for the detection of a traffic anomaly point. The experimental results show that the proposed method is simple, and the network traffic anomaly detection accuracy is high, and the real-time performance is guaranteed.
Keywords:fractal theory  network traffic  anomaly  detection  technology
本文献已被 CNKI 等数据库收录!
点击此处可从《科学技术与工程》浏览原始摘要信息
点击此处可从《科学技术与工程》下载免费的PDF全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号