Přehled o publikaci
2018
Toward Real-time Network-wide Cyber Situational Awareness
JIRSÍK, Tomáš a Pavel ČELEDAZákladní údaje
Originální název
Toward Real-time Network-wide Cyber Situational Awareness
Autoři
JIRSÍK, Tomáš a Pavel ČELEDA
Vydání
Taipei, Taiwan, NOMS 2018 - 2018 IEEE/IFIP Network Operations and Management Symposium, od s. 1-7, 7 s. 2018
Nakladatel
IEEE
Další údaje
Jazyk
angličtina
Typ výsledku
Stať ve sborníku
Utajení
není předmětem státního či obchodního tajemství
Forma vydání
elektronická verze "online"
Odkazy
Označené pro přenos do RIV
Ano
Kód RIV
RIV/00216224:14610/18:00106893
Organizace
Ústav výpočetní techniky – Masarykova univerzita – Repozitář
ISBN
978-1-5386-3416-5
UT WoS
EID Scopus
Klíčová slova anglicky
cyber; situation awareness; real-time; Stream4Flow
Návaznosti
VI20162019014, projekt VaV.
Změněno: 31. 3. 2023 04:06, RNDr. Daniel Jakubík
Anotace
V originále
In today's complex computer networks, we are constantly facing a risk of data loss, system compromise, or intellectual property theft. The complexity of the networks hinders their effective defense. A Network-wide Cyber Situational Awareness (NwCSA) has been introduced to assist a network security administrator with network security. The concept, however, faces several challenges that hinder an efficient application of the NwCSA in a real-world environment. The challenges include the overload of raw data, low speed of reaction, and a lack of context and unified view on a network. In this paper, we present a novel framework that faces above mentioned challenges. The framework leverages a distributed data stream processing system and methods for real-time big data processing. The framework is evaluated with respect to stated requirements on systems for NwCSA. Moreover, we present a prototype framework implementation and provide lessons learned from its real-world deployment.