Capítulo de livro Revisado por pares

On Searching for Patterns in Traceroute Responses

2014; Springer Science+Business Media; Linguagem: Inglês

10.1007/978-3-319-04918-2_7

ISSN

1611-3349

Autores

Nevil Brownlee,

Tópico(s)

Anomaly Detection Techniques and Applications

Resumo

We study active traceroute measurements from more than 1,000 vantage points towards a few targets over 24 hours or more. Our aim is to detect patterns in the data that correspond to significant operational events. Because traceroute data is complex and noisy, little work in this area has been published to date. First we develop a measure for the differences between successive traceroute measurements, then we use this measure to cluster changes across all vantage points and assess the meaning and descriptive power of these clusters. Large-scale operational events stand out clearly in our 3D visualisations; our clustering technique could be developed further to make such events visible to the operator community in near-real time.

Referência(s)