本文设计了基于流量的网络行为分析系统,实现了流量数据采集、流量可视化展现,分析了异常流量的特征,并以DDoS为例,利用这些特征检测网络攻击行为,仿真实验表明,该系统对于以流量为主要攻击手段的异常行为,能较为准确的进行检测。
This article designed a system of network behavior analysis based on the flow which realizsed traffic data collection,flow visualization show,analyzed abnormal flow characteristics and to DDOS for example,use these features to detect network attacks,simulation results show that the system can accurately detect the unusual behavior which the flow as a primary means of attack.