Skip to main content
USENIX
  • Conferences
  • Students
Sign in

connect with us


  •  Twitter
  •  Facebook
  •  LinkedIn
  •  Google+
  •  YouTube

twitter

Tweets by @usenix

usenix conference policies

  • Event Code of Conduct
  • Conference Network Policy
  • Statement on Environmental Responsibility Policy

You are here

Home ยป Detecting Anomalies in Network Traffic Using Maximum Entropy Estimation
Tweet

connect with us

Detecting Anomalies in Network Traffic Using Maximum Entropy Estimation

Abstract: 

We develop a behavior-based anomaly detection method that detects network anomalies by comparing the current network traffic against a baseline distribution. The Maximum Entropy technique provides a flexible and fast approach to estimate the baseline distribution, which also gives the network administrator a multi-dimensional view of the network traffic. By computing a measure related to the relative entropy of the network traffic under observation with respect to the baseline distribution, we are able to distinguish anomalies that change the traffic either abruptly or slowly. In addition, our method provides information revealing the type of the anomaly detected. It requires a constant memory and a computation time proportional to the traffic rate.

Yu Gu, University of Massachusetts, Amherst

Andrew McCallum, University of Massachusetts, Amherst

BibTeX
@inproceedings {269188,
author = {Yu Gu and Andrew McCallum},
title = {Detecting Anomalies in Network Traffic Using Maximum Entropy Estimation},
booktitle = {Internet Measurement Conference 2005 (IMC 05)},
year = {2005},
address = {Berkeley, CA},
url = {https://www.usenix.org/conference/imc-05/detecting-anomalies-network-traffic-using-maximum-entropy-estimation},
publisher = {USENIX Association},
month = oct,
}
Download

Links

Paper: 
http://usenix.org/events/imc05/tech/full_papers/gu/gu.pdf
Paper (HTML): 
http://usenix.org/events/imc05/tech/full_papers/gu/gu_html/index.html
  • Log in or    Register to post comments

© USENIX

  • Privacy Policy
  • Contact Us