Network Administration White Papers
Characteristics of Network Traffic Flow Anomalies
Overview One of the primary tasks of network administrators is monitoring routers and switches for anomalous traffic behavior such as outages, configuration changes, flash crowds and abuse. Recognizing and identifying anomalous behavior is often based on ad hoc methods developed from years of experience in managing networks. A variety of commercial and open source tools have been developed to assist in this process, however these require policies and/or or thresholds to be defined by the user in order to trigger alerts. The better the description of the anomalous behavior, the more effective these tools become. In this extended abstract the paper describes a project focused on precise characterization of anomalous network traffic behavior.
| Publisher | University of Wisconsin | File Format | |
|---|---|---|---|
| Date Published | September 2001 | ||
| Format | White Papers | ||
| Topics | |||



