The Community for Technology Leaders
Asia-Pacific Symposium on Visualization (2007)
Sydney, NSW
Feb. 5, 2007 to Feb. 7, 2007
ISBN: 1-4244-0808-3
pp: 41-44
S. Mukosaka , Graduate Sch. of Inf. Syst., Univ. of Electro-Commun.
H. Koike , Graduate Sch. of Inf. Syst., Univ. of Electro-Commun.
ABSTRACT
In monitoring security of enterprise or campus networks, detecting attacks from internal network to external network is becoming more and more important. After detecting such attacks, finding the location of the target PC is sometimes needed. This paper describes a visual security monitoring system for large-scale local area network. The system integrates three information, logical, temporal, and geographical information, in one 3D visualization. The system also provides effective interaction capabilities and filtering mechanism. IDS logs obtained at the computer center of our university were visualized, and typical examples such as botnet activities and SSH brute force attack were discussed
INDEX TERMS
IP address, integrated visualization system, visual security monitoring system, large-scale local area network, logical information, temporal information, geographical information, 3D visualization, interaction capabilities, filtering mechanism
CITATION

H. Koike and S. Mukosaka, "Integrated visualization system for monitoring security in large-scale local area network," Asia-Pacific Symposium on Visualisation 2007(APVIS), Sydney, NSW, 2007, pp. 41-44.
doi:10.1109/APVIS.2007.329273
84 ms
(Ver 3.3 (11022016))