A fast unsupervised preprocessing method for network monitoring - Sorbonne Université Accéder directement au contenu
Article Dans Une Revue Annals of Telecommunications - annales des télécommunications Année : 2019

A fast unsupervised preprocessing method for network monitoring

Résumé

Identifying a network misuse takes days or even weeks, and network administrators usually neglect zero-day threats until a large number of malicious users exploit them. Besides, security applications, such as anomaly detection and attack mitigation systems, must apply real-time monitoring to reduce the impacts of security incidents. Thus, information processing time should be as small as possible to enable an effective defense against attacks. In this paper, we present a fast preprocessing method for network traffic classification based on feature correlation and feature normalization. Our proposed method couples a normalization and feature selection algorithms. We evaluate the proposed algorithms against three different datasets for eight different machine learning classification algorithms. Our proposed normalization algorithm reduces the classification error rate when compared with traditional methods. Our feature selection algorithm chooses an optimized subset of features improving accuracy by more than 11% within a 100-fold reduction in processing time when compared to traditional feature selection and feature reduction algorithms. The preprocessing method is performed in batch and streaming data, being able to detect concept-drift.
Fichier principal
Vignette du fichier
revista_sele__o_2 (1).pdf (564.91 Ko) Télécharger le fichier
Origine : Fichiers produits par l'(les) auteur(s)
Loading...

Dates et versions

hal-02098986 , version 1 (28-06-2019)

Identifiants

Citer

Martin Andreoni Lopez, Diogo Mattos, Otto Carlos M. B. Duarte, Guy Pujolle. A fast unsupervised preprocessing method for network monitoring. Annals of Telecommunications - annales des télécommunications, 2019, 74 (3-4), pp.139-155. ⟨10.1007/s12243-018-0663-2⟩. ⟨hal-02098986⟩
109 Consultations
268 Téléchargements

Altmetric

Partager

Gmail Facebook X LinkedIn More