2010 IEEE Network Operations and Management Symposium - NOMS 2010 2010
DOI: 10.1109/noms.2010.5488476
|View full text |Cite
|
Sign up to set email alerts
|

SCRIPT: A framework for Scalable Real-time IP Flow Record Analysis

Abstract: -Analysis of IP traffic is highly important, since it determines the starting point of many network management operations, such as intrusion detection, network planning, network monitoring, or accounting and billing. One of the most utilized metering data formats in analysis applications are IP (Internet Protocol) flow records. With the increase of IP traffic, such traffic analysis applications need to cope with a constantly increasing number of flow records. Typically, centralized approaches to IP traffic ana… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
1
1
1

Citation Types

0
5
0

Year Published

2010
2010
2017
2017

Publication Types

Select...
3
3
3

Relationship

2
7

Authors

Journals

citations
Cited by 9 publications
(5 citation statements)
references
References 21 publications
0
5
0
Order By: Relevance
“…The evaluation of two of the main mechanisms developed in this thesis named SCRIPT [8] and DiCAP [9] are briefly sum marized here. The main purpose of SCRIPT is to distribute IPFIX records to several machines according to rules required by an analysis application.…”
Section: Discussionmentioning
confidence: 99%
“…The evaluation of two of the main mechanisms developed in this thesis named SCRIPT [8] and DiCAP [9] are briefly sum marized here. The main purpose of SCRIPT is to distribute IPFIX records to several machines according to rules required by an analysis application.…”
Section: Discussionmentioning
confidence: 99%
“…Even more performance improvements can be achieved by deploying multiple flow collectors and distributing the data between them. This, however, requires some management system that decides how data is distributed (for an example, see [71]).…”
Section: A Storage Formatsmentioning
confidence: 99%
“…In [10] and [24] the authors show that sampling algorithms negatively influence the performance of intrusion detection systems. The SCRIPT framework [26] uses a peerto-peer overlay in order to store and process flow records in multiple nodes, and thus, increase the throughput of the traffic analyzing system.…”
Section: Related Workmentioning
confidence: 99%