Sixth International Conference on Parallel and Distributed Computing Applications and Technologies (PDCAT'05) Worm Detection in Large Scale Network by Traffic Dalian, China December 05-December 08 ISBN: 0-7695-2405-2
Nowadays, worms have been one of the leading threats to information security and service availability. Current operational practices have not been able to manage the threat effectively. So it is very important to make early warning of the burst of worm in large scale network. In this paper we analyze the real network traffic in large scale network. Based on long time statistic, we construct a network traffic model which concern two parameters: the traffic volume and curve of traffic function. And then we propose a method to computer the function curve of normal traffic function in ideal condition. We deployed them in our campus network (more than 20000 computers, 400M/s bandwidth to internet).It is shown that the worms are detected automatically and efficiently.
Index Terms:
Network Security, Worm Detection, Network Traffic, Statistic
Citation:
Yi Xin, Bin-Xing Fang, Xiao-Chun Yun, Hai-Yong Chen, "Worm Detection in Large Scale Network by Traffic," pdcat, pp.270-273, Sixth International Conference on Parallel and Distributed Computing Applications and Technologies (PDCAT'05), 2005 Usage of this product signifies your acceptance of the Terms of Use. | |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||