An efficient entropy-based network anomaly detection method using MIB

With the increasingly widespread application of computer network, it has become a critical task to detect anomalous behaviors in the field of network security. In this paper we develop an entropy-based statistical approach that determines and reports entropy contents for variables in the Management...

Full description

Saved in:
Bibliographic Details
Published in:2014 IEEE International Conference on Progress in Informatics and Computing pp. 428 - 432
Main Authors: Lei Zhao, Fu Wang
Format: Conference Proceeding
Language:English
Published: IEEE 01.05.2014
Subjects:
ISBN:9781479920334, 1479920339
Online Access:Get full text
Tags: Add Tag
No Tags, Be the first to tag this record!
Description
Summary:With the increasingly widespread application of computer network, it has become a critical task to detect anomalous behaviors in the field of network security. In this paper we develop an entropy-based statistical approach that determines and reports entropy contents for variables in the Management Information Base. The change of the entropy value indicates that a massive network event or an anomaly may occur. We give the analysis on a real data set provided by a large-size network company. Both our theoretical analysis and experimental results demonstrate that the method is effective and efficient for network anomaly detection.
ISBN:9781479920334
1479920339
DOI:10.1109/PIC.2014.6972371