Izvestiya of Saratov University. Mathematics. Mechanics. Informatics
RUS  ENG    JOURNALS   PEOPLE   ORGANISATIONS   CONFERENCES   SEMINARS   VIDEO LIBRARY   PACKAGE AMSBIB  
General information
Latest issue
Archive
Impact factor

Search papers
Search references

RSS
Latest issue
Current issues
Archive issues
What is RSS



Izv. Saratov Univ. Math. Mech. Inform.:
Year:
Volume:
Issue:
Page:
Find






Personal entry:
Login:
Password:
Save password
Enter
Forgotten password?
Register


Izvestiya of Saratov University. Mathematics. Mechanics. Informatics, 2024, Volume 24, Issue 3, Pages 452–462
DOI: https://doi.org/10.18500/1816-9791-2024-24-3-452-462
(Mi isu1043)
 

Scientific Part
Computer Sciences

Detection of sources of network attacks based on the data sampling

E. S. Sagatov, A. M. Sukhov, V. V. Azmyakov

Sevastopol State University, 33 Universitetskaya St., Sevastopol 299053, Russia
References:
Abstract: This article defines the rules for finding the threshold values for the main network variables used to detect network intrusions under conditions of limited data sampling. The sFlow technology operates with a limited sample of packets, and one packet out of 50 can be analyzed, but this value can reach 5000. The main conclusion is that the product of the threshold value and sample resolution remains a constant value. The article defines the size of the maximum resolution, at which an attack with a given threshold can be detected. Based on the experimental data, this hypothesis was tested; considering the experimental error, it was verified.
Key words: thresholds for detecting DDoS attacks, sFlow data sampling, rank distributions in network security.
Funding agency Grant number
Севастопольский государственный университет 42-01-09/253/2022-1
The authors acknowledge Sevastopol State University (SevSU) for the Research Grant 42-01-09/253/2022-1.
Received: 21.03.2023
Accepted: 29.05.2023
Bibliographic databases:
Document Type: Article
UDC: 004.7
Language: English
Citation: E. S. Sagatov, A. M. Sukhov, V. V. Azmyakov, “Detection of sources of network attacks based on the data sampling”, Izv. Saratov Univ. Math. Mech. Inform., 24:3 (2024), 452–462
Citation in format AMSBIB
\Bibitem{SagSukAzm24}
\by E.~S.~Sagatov, A.~M.~Sukhov, V.~V.~Azmyakov
\paper Detection of sources of network attacks based on the data sampling
\jour Izv. Saratov Univ. Math. Mech. Inform.
\yr 2024
\vol 24
\issue 3
\pages 452--462
\mathnet{http://mi.mathnet.ru/isu1043}
\crossref{https://doi.org/10.18500/1816-9791-2024-24-3-452-462}
\edn{https://elibrary.ru/OSEMWU}
Linking options:
  • https://www.mathnet.ru/eng/isu1043
  • https://www.mathnet.ru/eng/isu/v24/i3/p452
  • Citing articles in Google Scholar: Russian citations, English citations
    Related articles in Google Scholar: Russian articles, English articles
    Izvestiya of Saratov University. Mathematics. Mechanics. Informatics
     
      Contact us:
     Terms of Use  Registration to the website  Logotypes © Steklov Mathematical Institute RAS, 2024