D 2018

Toward Real-time Network-wide Cyber Situational Awareness

JIRSÍK, Tomáš a Pavel ČELEDA

Základní údaje

Originální název

Toward Real-time Network-wide Cyber Situational Awareness

Autoři

JIRSÍK, Tomáš a Pavel ČELEDA

Vydání

Taipei, Taiwan, NOMS 2018 - 2018 IEEE/IFIP Network Operations and Management Symposium, od s. 1-7, 7 s. 2018

Nakladatel

IEEE

Další údaje

Jazyk

angličtina

Typ výsledku

Stať ve sborníku

Utajení

není předmětem státního či obchodního tajemství

Forma vydání

elektronická verze "online"

Odkazy

URL

Označené pro přenos do RIV

Ano

Kód RIV

RIV/00216224:14610/18:00106893

Organizace

Ústav výpočetní techniky – Masarykova univerzita – Repozitář

ISBN

978-1-5386-3416-5

DOI

https://doi.org/10.1109/NOMS.2018.8406166

UT WoS

000541820800054

EID Scopus

2-s2.0-85050686382

Klíčová slova anglicky

cyber; situation awareness; real-time; Stream4Flow

Návaznosti

VI20162019014, projekt VaV.
Změněno: 31. 3. 2023 04:06, RNDr. Daniel Jakubík

Anotace

V originále

In today's complex computer networks, we are constantly facing a risk of data loss, system compromise, or intellectual property theft. The complexity of the networks hinders their effective defense. A Network-wide Cyber Situational Awareness (NwCSA) has been introduced to assist a network security administrator with network security. The concept, however, faces several challenges that hinder an efficient application of the NwCSA in a real-world environment. The challenges include the overload of raw data, low speed of reaction, and a lack of context and unified view on a network. In this paper, we present a novel framework that faces above mentioned challenges. The framework leverages a distributed data stream processing system and methods for real-time big data processing. The framework is evaluated with respect to stated requirements on systems for NwCSA. Moreover, we present a prototype framework implementation and provide lessons learned from its real-world deployment.
Zobrazeno: 6. 5. 2026 23:54