Two Dimensional Time-Series for Anomaly Detection and Regulation in Adaptive Systems

作者: Mark Burgess

DOI: 10.1007/3-540-36110-3_17

关键词:

摘要: A two dimensional time approach is introduced in order to classify a periodic, adaptive threshold for service level anomaly detection. An iterative algorithm applied history analysis on this periodic provide the smooth roll-off significance of data with time. The described leads an approximately ten-fold compression storage, and thousand fold improvement computation cycles, compared naive time-series approach. behaviour detector discussed, result implemented cfengine direct use system management.

参考文章(18)
Mark Burgess, Theoretical System Administration usenix large installation systems administration conference. pp. 1- 14 ,(2000)
Mark Burgess, A Site Configuration Engine. Computing Systems. ,vol. 8, pp. 309- 337 ,(1995)
Brian Loe, Michael Carney, A comparison of methods for implementing adaptive security policies usenix security symposium. pp. 1- 1 ,(1998)
J. O. Kephart, A biologically inspired immune system for computers Artificial Life. ,(1994)
Marcus J. Ranum, Andrew Lambeth, Michael T. Stolarchuk, Kent Landfield, Mark Sienkiewicz, Eric Wall, Implementing a Generalized Tool for Network Monitoring usenix large installation systems administration conference. pp. 1- 8 ,(1997)
Jay Lepreau, Peter Hoogenboom, Computer system performance problem detection using time series models usenix summer technical conference. pp. 2- ,(1993)
Steven A. Hofmeyr, Stephanie Forrest, Anil Somayaji, Intrusion detection using sequences of system calls Journal of Computer Security. ,vol. 6, pp. 151- 180 ,(1998) , 10.3233/JCS-980109
Joseph L. Hellerstein, Fan Zhang, Perwez Shahabuddin, A statistical approach to predictive detection Computer Networks. ,vol. 35, pp. 77- 95 ,(2001) , 10.1016/S1389-1286(00)00151-1
Mark Burgess, Automated system administration with feedback regulation Software - Practice and Experience. ,vol. 28, pp. 1519- 1530 ,(1998) , 10.1002/(SICI)1097-024X(19981210)28:14<1519::AID-SPE213>3.3.CO;2-E
Mark Burgess, Hårek Haugerud, Sigmund Straumsnes, Trond Reitan, Measuring system normality ACM Transactions on Computer Systems. ,vol. 20, pp. 125- 160 ,(2002) , 10.1145/507052.507054