Visualizing Network Traffic: for Silk Data Exploration and Scan Detection - Mai El-shehaly - Livros - VDM Verlag Dr. Müller - 9783639251401 - 4 de maio de 2010
Caso a capa e o título não sejam correspondentes, considere o título como correto

Visualizing Network Traffic: for Silk Data Exploration and Scan Detection

Mai El-shehaly

Visualizing Network Traffic: for Silk Data Exploration and Scan Detection

Network packet traces, despite having a lot of noise, contain priceless information, especially for investigating security incidents and performance problems. However, given the gigabytes of ?ow crossing a typical enterprise network every day, spotting malicious activity and analyzing trends become tedious tasks. Therefore, the appropriate representation of traffic data to the human user is crucial to network security. In this book, we bring together two powerful tools from different areas of application: SiLK (System for Internet-Level Knowledge), for command-based network trace analysis; and ComVis, a generic information visualization tool. We integrate the powers of both tools by aiding simplified interaction between them, using a simple GUI, for the purpose of visualizing network traces, characterizing interesting patterns, and ?ngerprinting related activity. The main contribution of this research is a protocol-specific framework of visualization for ICMP and UDP traffic data. The Guidelines we infer can be vital in the creation of ?smart books? describing best practices in using visualization and interaction techniques to maintain network security.

Mídia Livros     Paperback Book   (Livro de capa flexível e brochura)
Lançado 4 de maio de 2010
ISBN13 9783639251401
Editoras VDM Verlag Dr. Müller
Páginas 200
Dimensões 225 × 11 × 150 mm   ·   299 g
Idioma English