dc.contributor.author | Kızılören, Tevfik | |
dc.contributor.author | Germen, Emin | |
dc.date.accessioned | 2019-10-19T11:17:29Z | |
dc.date.available | 2019-10-19T11:17:29Z | |
dc.date.issued | 2007 | |
dc.identifier.isbn | 1424413648 -- 9781424413645 | |
dc.identifier.uri | https://dx.doi.org/10.1109/ISCIS.2007.4456852 | |
dc.identifier.uri | https://hdl.handle.net/11421/11708 | |
dc.description | Middle East Technical University;The Scientific and Technological Research Council of Turkey;IEEE, Turkey Section | en_US |
dc.description | 22nd International Symposium on Computer and Information Sciences, ISCIS 2007 -- 7 November 2007 through 9 November 2007 -- Ankara -- 72942 | en_US |
dc.description.abstract | Anomaly detection in network traffic is one of the most challenging topics in the study of computer science and networking. This paper introduces a classification method for analyzing network traffic behavior. In order to distinguish the normal traffic with well-known anomalies such as port scanning and DOS attacks, Self Organizing Maps (SOMs), one of the well-known artificial neural network architecture, is used. The measurement of traffic is performed by using Simple Network Management Protocol (SNMP). In this work, it is proposed a SOM-based classifier to discriminate three types of network traffic as port scanning, heavy-download and the rests. It is worth to mention that impressively satisfactory results have been obtained. The method has also been enhanced to obtain better results by trying to find trajectories on the map with sliding the input vectors in time and developed an alarm mechanism. Here it is possible to detect whether consecutive trajectories are hit by one of the classes or not. The success rate of the system is approximate to certain | en_US |
dc.language.iso | eng | en_US |
dc.relation.isversionof | 10.1109/ISCIS.2007.4456852 | en_US |
dc.rights | info:eu-repo/semantics/closedAccess | en_US |
dc.subject | Anomaly Detection | en_US |
dc.subject | Classification | en_US |
dc.subject | Component | en_US |
dc.subject | Network Traffic | en_US |
dc.subject | Intrusion Detection | en_US |
dc.subject | Neural Networks | en_US |
dc.subject | Self Organizing Maps | en_US |
dc.subject | Snmp | en_US |
dc.subject | Som | en_US |
dc.title | Network traffic classification with self organizing maps | en_US |
dc.type | conferenceObject | en_US |
dc.relation.journal | 22nd International Symposium on Computer and Information Sciences, ISCIS 2007 - Proceedings | en_US |
dc.contributor.department | Anadolu Üniversitesi, Bilgisayar Araştırma ve Uygulama Merkezi | en_US |
dc.identifier.startpage | 147 | en_US |
dc.identifier.endpage | 151 | en_US |
dc.relation.publicationcategory | Konferans Öğesi - Uluslararası - Kurum Öğretim Elemanı | en_US |
dc.contributor.institutionauthor | Germen, Emin | |