Title
Finding Persistent Elements Of Anomalous Flows In Distributed Monitoring Systems
Abstract
This paper concentrates on the issue of detecting persistent elements of anomalous flows in a distributed monitoring system, which has many applications in detecting cyberattacks, forecasting influenza, analyzing search keywords, and etc. However, only a few studies consider the anomalous flow detection problem in distributed systems. Meanwhile, most of the existing studies on persistent element detection problem in distributed systems assume that there is only one flow in the data stream, which is not always true in practice. In this paper, we combine the problems of anomalous flow detection and persistent elements finding, and propose an efficient mechanism to find the t-persistent elements of p-anomalous flows from element sets of numerous flows in the monitors of a distributed system, where t and p are system parameters that can be defined based on the application requirement. We adopt tight data structures such as bitmap and bloom filter to record the elements of different flows and filter out the elements that not in the t-persistent element set, which can help us reduce the communication overhead between monitors and the controller. We also give an analysis of how to get the optimal settings of these tight data structures that can minimize the total communication overhead. The experiment results based on real network traces show that the proposed mechanism achieves 76.1% and 69.2% reduction in communication overhead in comparison with a straightforward solution and a state-of-the-art solution based on coding cuckoo filter, respectively.
Year
DOI
Venue
2020
10.1109/ISCC50000.2020.9219645
2020 IEEE SYMPOSIUM ON COMPUTERS AND COMMUNICATIONS (ISCC)
Keywords
DocType
ISSN
Traffic measurement, anomalous flow, persistent element, bloom filter
Conference
1530-1346
Citations 
PageRank 
References 
0
0.34
0
Authors
7
Name
Order
Citations
PageRank
Zhen Cao100.34
Yu-e Sun2337.07
He Huang382965.14
Hansong Guo400.34
Yang Du5146.47
An Liu62610.29
Le Lu700.34