Anomaly detection using one-class SVM for logs of juniper router devices

Tat Bao Thien Nguyen, Teh Lu Liao, Tuan Anh Vu

研究成果: Conference contribution

摘要

The article deals with anomaly detection of Juniper router logs. Abnormal Juniper router logs include logs that are usually different from the normal operation, and they often reflect the abnormal operation of router devices. To prevent router devices from being damaged and help administrator to grasp the situation of error quickly, detecting abnormal operation soon is very important. In this work, we present a new way to get important features from log data of Juniper router devices and use machine learning method (basing on One-Class SVM model) for anomaly detection. One-Class SVM model requires some knowledge and comprehension about logs of Juniper router devices so that it can analyze, interpret, and test the knowledge acquired. We collect log data from a lot of real Juniper router devices and classify them based on our knowledge. Before these logs are used for training and testing the One-Class SVM model, the feature extraction phase for these data was carried out. Finally, with the proposed method, the system errors of the routers were detected quickly and accurately. This may help our company to reduce the operation cost for the router systems.

原文English
主出版物標題Industrial Networks and Intelligent Systems - 5th EAI International Conference, INISCOM 2019, Proceedings
編輯Trung Quang Duong, Nguyen-Son Vo, Loi K. Nguyen, Quoc-Tuan Vien, Van-Dinh Nguyen
發行者Springer Verlag
頁面302-312
頁數11
ISBN(列印)9783030301484
DOIs
出版狀態Published - 2019 一月 1
事件5th EAI International Conference on Industrial Networks and Intelligent Systems, INISCOM 2019 - Ho Chi Minh City, Viet Nam
持續時間: 2019 八月 192019 八月 19

出版系列

名字Lecture Notes of the Institute for Computer Sciences, Social-Informatics and Telecommunications Engineering, LNICST
293
ISSN(列印)1867-8211

Conference

Conference5th EAI International Conference on Industrial Networks and Intelligent Systems, INISCOM 2019
國家Viet Nam
城市Ho Chi Minh City
期間19-08-1919-08-19

All Science Journal Classification (ASJC) codes

  • Computer Networks and Communications

指紋 深入研究「Anomaly detection using one-class SVM for logs of juniper router devices」主題。共同形成了獨特的指紋。

引用此