The complexity and throughput of computer networks are rapidly increasing as a result of the proliferation of interconnected devices, data-driven applications, and remote working. Providing situational awareness for computer networks requires monitoring and analysis of network data to understand normal activity and identify abnormal activity. A scalable platform to process and visualize data in real time for large-scale networks enables security analysts and researchers to not only monitor and study network flow data but also experiment and develop novel analytics. In this paper, we introduce InSight2, an open-source platform for manipulating both streaming and archived network flow data in real time that aims to address the issues of existing solutions such as scalability, extendability, and flexibility. Case-studies are provided that demonstrate applications in monitoring network activity, identifying network attacks and compromised hosts and anomaly detection.
CITATION STYLE
Kodituwakku, H. A. D. E., Keller, A., & Gregor, J. (2020). Insight2: A modular visual analysis platform for network situational awareness in large-scale networks. Electronics (Switzerland), 9(10), 1–15. https://doi.org/10.3390/electronics9101747
Mendeley helps you to discover research relevant for your work.