| Journal of Computer Science | |
| Scorpius: sFlow Network Anomaly Simulator | Science Publications | |
| Mario Lemes Proença Jr.1  Marcos V.O. de Assis1  | |
| 关键词: Scorpius; Flows; Anomaly; Simulation; Network Management; | |
| DOI : 10.3844/jcssp.2015.662.674 | |
| 学科分类:计算机科学(综合) | |
| 来源: Science Publications | |
PDF
|
|
【 摘 要 】
Due to the increasing amount of data traveling computernetworks every day, efficient management of this information is required toensure the quality of the services provided by them. Development of new networkmanagement tools and mechanisms is a widely approached area due to itsimportance, not only to the current technology, but also to next generationnetwork standards and equipments. Several researches have been directed to theuse of IP Flows in order to increase the efficiency of these management tools.Although there are several proposed approaches in this area, most of them don’thave suitable test scenarios to validate their performance results. In this study,we present Scorpius, a new simulation tool able to help testing networkmanagement mechanisms based on IP Flows. Scorpius is capable of simulatingdifferent kinds of anomalies, such as Denial of Service (DoS), DistributedDenial of Service (DDoS), Flash Crowd andPort Scan, directly into the flow export files. This characteristic unites theadvantages of tests in real network environments without the drawbacks of theoccurrence of real anomalies and attacks, even controlled ones. This approachmakes the processes of performance analysis of anomaly detection approacheseasier, without interfering or hampering the operation of the analyzed network.In order to validate the efficiency of the presented tool, we use real datacollected from a large-scale network environment.
【 授权许可】
Unknown
【 预 览 】
| Files | Size | Format | View |
|---|---|---|---|
| RO201911300179568ZK.pdf | 636KB |
PDF