Network behavior analysis [electronic resource] : measurement, models, and applications / Kuai Xu.
This book provides a comprehensive overview of network behavior analysis that mines Internet traffic data in order to extract, model, and make sense of behavioral patterns in Internet objects such as end hosts, smartphones, Internet of things, and applications. The objective of this book is to fill...
Saved in:
Online Access: |
Full Text (via Springer) |
---|---|
Main Author: | |
Format: | Electronic eBook |
Language: | English |
Published: |
Singapore :
Springer,
2022.
|
Subjects: |
Table of Contents:
- Intro
- Preface
- Acknowledgements
- Contents
- 1 Introduction
- 1.1 What is Network Behavior Analysis
- 1.2 Network Behavior Measurement and Modeling
- 1.3 Benefits of Network Behavior Analysis
- 1.4 Book Overview and Organization
- References
- 2 Background of Network Behavior Analysis
- 2.1 Internet Measurement and Analysis
- 2.2 Data Collection for Network Behavior Analysis
- 2.3 Preliminaries of Network Behavior Analysis
- 2.3.1 Information Theory and Entropy
- 2.3.2 Graphical Analysis
- References
- 3 Behavior Modeling of Network Traffic.
- 3.1 Behavior-Oriented Network Traffic Modeling
- 3.1.1 What is Network Behavior
- 3.1.2 Traffic Features in Network Behavior
- 3.1.3 Behavioral Entities
- 3.1.4 Real-World Network Traffic Datasets
- 3.2 Identifying Significant Behavioral Entities
- 3.2.1 Significant Behavioral Entities
- 3.2.2 Adaptive Thresholding Algorithm
- 3.2.3 Extracting Significant Traffic Clusters
- 3.3 Network Behavior Modeling
- 3.3.1 Network Behavior Modeling
- 3.3.2 Network Behavior Classifications
- 3.4 Network Behavior Dynamics
- 3.4.1 Temporal Properties of Behavior Classes.
- 3.4.2 Behavior Dynamics of Individual Clusters
- 3.5 Summary
- References
- 4 Structural Modeling of Network Traffic
- 4.1 Communication Structure Analysis
- 4.1.1 Dominant State Analysis
- 4.1.2 Communication Structure of Networked Systems and Internet Applications
- 4.2 Exploring More Traffic Features
- 4.3 Summary
- References
- 5 Graphical Modeling of Network Traffic
- 5.1 Cluster-Aware Network Behavior Analysis
- 5.2 Modeling Host Communications with Bipartite Graphs and One-Mode Projections
- 5.3 Similarity Matrices and Clustering Coefficient of One-Mode Projection Graphs.
- 5.3.1 Similarity Matrices
- 5.3.2 Clustering Coefficients
- 5.4 Discovering Behavior Clusters via Clustering Algorithms
- 5.4.1 Partitioning Similarity Matrix with Spectral Clustering Algorithm
- 5.4.2 Clustering Analysis of Internet Applications
- 5.5 Traffic Characteristics and Similarity of Behavior Clusters
- 5.5.1 Making Sense of End-Host Behavior Clusters
- 5.5.2 Distinct Traffic Characteristics of Behavior Clusters
- 5.5.3 Exploring Similarity of Internet Applications
- 5.6 Summary
- References
- 6 Real-Time Network Behavior Analysis.
- 6.1 Real-Time Network Measurement and Monitoring
- 6.2 Real-Time System for Network Behavior Analysis
- 6.2.1 Design Guidelines
- 6.2.2 System Architecture
- 6.2.3 Key Implementation Details
- 6.3 Performance Evaluation
- 6.3.1 Benchmarking
- 6.3.2 Stress Test
- 6.4 Sampling and Filtering
- 6.4.1 Random Sampling
- 6.4.2 Profiling-Aware Filtering
- 6.5 Summary
- References
- 7 Applications
- 7.1 Profiling Internet Traffic
- 7.1.1 Server/Service Behavior Profiles
- 7.1.2 Heavy-Hitter Host Behavior Profiles
- 7.1.3 Scan/Exploit Profiles
- 7.1.4 Deviant or Rare Behaviors.