作者: Hansaka Angel Dias Edirisinghe Kodituwakku , Alex Keller , Jens Gregor
DOI: 10.3390/ELECTRONICS9101747
关键词: Situation awareness 、 Analytics 、 Scalability 、 Flow network 、 Anomaly detection 、 Flexibility (engineering) 、 Visual analytics 、 Distributed computing 、 Computer science 、 Throughput
摘要: The complexity and throughput of computer networks are rapidly increasing as a result the proliferation interconnected devices, data-driven applications, remote working. Providing situational awareness for requires monitoring analysis network data to understand normal activity identify abnormal activity. A scalable platform process visualize in real time large-scale enables security analysts researchers not only monitor study flow but also experiment develop novel analytics. In this paper, we introduce InSight2, an open-source manipulating both streaming archived that aims address issues existing solutions such scalability, extendability, flexibility. Case-studies provided demonstrate applications activity, identifying attacks compromised hosts anomaly detection.