• 検索結果がありません。

今後の課題として,実データを含むより大規模なデータによる実験と評価を予定する.

また,より多様なトラヒック生成を実現するシミュレーション手法の改良も必要である.

[1] G.D.Cole. Computer network measurements: Techniques and experiments. Tech-nical report, Computer Systems Modeling and Analysis Group, Computer Sci-ence Department, School of Engineering and Applied SciSci-ence, University of Cal-ifornia, 1971.

[2] P. Barford, J. Kline, D. Plonka, and A. Ron. A signal analysis of network traffic anomalies. InProc. of ACM SIGCOMM IMW, pp. 71–82, Nov. 2002.

[3] M. Roesch. Snort - light weight intrusion detection for networks. In Proc. of USENIX LISA, pp. 229–238, Nov. 1999.

[4] JAIPA, TCA, TELESA, JCTA, and Telecom-ISAC. 電気通信事業者における大量 通信等への対処と通信の秘密に関するガイドライン第2版, Mar. 2011.

[5] JAIPA, TCA, TELESA, and JCTA. 帯域制御の運用基準に関するガイドライン, May 2008.

[6] TCPDUMP and LIBPCAP, http://www.tcpdump.org/.

[7] G. Combs. Wireshark, http://www.wireshark.org.

[8] B. Claise. Cisco systems netflow services export version 9, Oct. 2004.

[9] P. Phaal, S. Panchen, and N. McKee. Inmon corporation’s sflow: A method for monitoring traffic in switched and routed networks, Sep. 2001.

[10] ntop, http://www.ntop.org/.

[11] K. Cho, K. Mitsuya, and A. Kato. Traffic data repository at the wide project. In Proc. of USENIX Annual Technical Conference: FREENIX Track, pp. 263–270, June 2000.

[12] J. Case, M. Fedor, M. Schoffstall, and J. Davin. A simple network management protocol (snmp), May 1990.

[13] K. McCloghrie and M. Rose. Management information base for network man-agement of tcp/ip-based internets, May 1990.

[14] K. McCloghrie and M. Rose. Management information base for network man-agement of tcp/ip-based internets: Mib-ii, Mar. 1991.

[15] T. Oetiker. Mrtg - the multi router traffic grapher. InProc. of USENIX LISA, pp. 141–148, Dec. 1998.

[17] K. Thompson, G.J. Miller, and R. Wilder. Wide-area internet traffic patterns and characteristics. IEEE Network, Vol. 11, pp. 10–23, 1997.

[18] L. KLEINROCK and W. E. NAYLOR. On measured behavior of the arpa net-work. In Proc. of ACM AFIPS national computer conference, Vol. 43, pp. 767–

780, May 1974.

[19] J. F. Shoch and J. A. Hupp. Measured performance of an ethernet local network.

Communications of the ACM, Vol. 23, No. 12, pp. 711–721, Dec. 1980.

[20] D. C. Feldmeier. Traffic measurements on a token ring network. InProc. of IEEE Computer Networking Symposium, pp. 236–243, Nov. 1986.

[21] K. C. Claffy, G. C. Polyzos, and H.-W. Braun. Traffic characteristics of the t1 nsfnet backbone. InProc. of INFOCOM Twelfth Annual Joint Conference of the IEEE Computer and Communications Societies, Vol. 2, pp. 885 – 892, Apr. 1993.

[22] R. A. Maxion. Anomaly detection for diagnosis. In Proc. of the 20’ th IEEE Annual International Symposium on Fault Tolerant Computing (FTCS), pp. 20–

27, Jun. 1990.

[23] J. D. Brutlag. Aberrant behavior detection in time series for network monitoring.

InProc. of USENIX LISA, pp. 139–146, Dec. 2000.

[24] B. Krishnamurthy, S. Sen, Y. Zhang, and Y. Chen. Sketch-based change detec-tion: Methods, evaluation, and applications. InProc. of ACM SIGCOMM IMC, pp. 234–247, Oct. 2003.

[25] J. L. CARTER and M.N. WEGMAN. Universal classes of hash functions.Journal of Computer and System Sciences, Vol. 18, No. 2, pp. 143–154, Apr. 1979.

[26] J. B. D. Cabrera, L. Lewis, X. Qin, W. Lee, R. K. Prasanth, B. Ravichandran, and R. K. Mehra. Proactive detection of distributed denial of service attacks using mib traffic variables a feasibility study. In Proc. of IFIP/IEEE International Symposium on Integrated Network Management, pp. 609–622, May 2001.

[27] M. Thottan and C. Ji. Anomaly detection in ip networks. IEEE Transactions on Signal Processing, Vol. 51, No. 8, pp. 2191–2204, Aug. 2003.

[28] M. Thottan and C. Ji. Fault prediction at the network layer using intelligent agents. In Proc. of the IFIP/IEEE International Symposium on Integrated Net-work Management, pp. 745–759, May 1999.

[29] A. Lakhina, M. Crovella, and C. Diot. Diagnosing network-wide traffic anomalies.

InProc. of ACM SIGCOMM, pp. 219–230, 2004.

[30] J. E. Jackson and G. S. Mudholkar. Control procedures for residuals associated with principal component analysis. Technometrics, Vol. 21, No. 3, pp. 341–349,

mib using svm. The International Journal for the Computer and Telecommuni-cations Industry, pp. 4212–4219, 2008.

[32] C. Manikopoulos and S. Papavassiliou. Network intrusion and fault detection: a statistical anomaly approach. IEEE Communication Magazine, pp. 76–82, Oct.

2002.

[33] C.S.HOOD and C. Ji. Proactive network-fault detection. IEEE Transactions on Reliability, Vol. 46, No. 3, pp. 333–341, 1997.

[34] L. T. Heberlein, G. V. Dias, K. N. Levitt, B. Mukherjee, J. Wood, and D. Wolber.

A network security monitor. InProc. of IEEE Computer Society Symposium on Research in Security and Privacy, pp. 296–304, May 1990.

[35] T. Karagiannis, K. Papagiannaki, and M. Faloutsos. Blinc: Multilevel traffic classification in the dark. In Proc. of ACM SIGCOMM conference on Appli-cations, technologies, architectures, and protocols for computer communiAppli-cations, pp. 229–240, Aug. 2005.

[36] J. Erman, M. Arlitt, and A. Mahanti. Traffic classification using clustering al-gorithms. In Proc. of ACM SIGCOMM workshop on Mining network data, pp.

281–286, Sep. 2006.

[37] G. Dewaele, Y. Himura, P. Borgnat, K. Fukuda, P. Abry, O. Michel, R. Fontugne, K. Cho, and H. Esaki. Unsupervised host behavior classification from connection patterns. International Journal of Network Management, Vol. 20, No. 5, pp.

317–337, Sep. 2010.

[38] H. Kim, KC. Claffy, M. Fomenkov, D. Barman, M. Faloutsos, and K. Lee. Inter-net traffic classification demystified: Myths, caveats, and the best practices. In Proc. of ACM SIGCOMM CoNEXT 2008, pp. 4212–4219, Dec. 2008.

[39] T. Watanabe, K. Sugawara, and H. Sugihara. A new pattern representation scheme using data compression. IEEE Trans. Pattern Analysis and Machine Intelligence, pp. 579–590, May 2002.

[40] A. N. Kolmogorov. Three apporaches to the quantitative definition of informa-tion. Problems of Information Transmission, Vol. 1, No. 1, pp. 1–7, 1965.

[41] M. Li and P. M. B. Vit´anyi. An Introduction to Kolmogorov Complexity and Its Applications. Springer New York, 3 edition, 2008.

[42] M. Li, X. Chen, X. Li, B. Ma, and P. M. B. Vit´anyi. The similarity metric.IEEE Trabs. of Information Theory, Vol. 50, No. 12, Dec. 2004.

[43] R. Cilibrasi and P. M. B. Vit´anyi. Clustering by compression. IEEE Trans. of Information Theory, Vol. 51, No. 4, pp. 1523–1545, Apr. 2005.

1978.

[45] T. A. Welch. A technique for high-performance data compression. IEEE Com-puter, Vol. 17, No. 6, pp. 8–19, 1984.

[46] K. Nishida, R.Banno, K. Fujimura, and T. Hoshide. Tweet classification by data compression. In Proc. of ACM International workshop on DETecting and Exploiting Cultural diversiTy on the social web, pp. 29–34, Oct. 2011.

[47] D. Cerra, A. Mallet, L. Gueguen, and M. Datcu. Algorithmic information theory-based analysis of earth observation images: An assessment.IEEE GEOSCIENCE AND REMOTE SENSING LETTERS, Vol. 7, No. 1, pp. 8–12, Jan. 2010.

[48] 渡辺俊典, 佐々木浩二, 井原廣一. 複製と削除の機構を用いた自律的学習機械−DA NDELION. 情報処理学会論文誌, Vol. 24, No. 6, pp. 847–856, Nov 1983.

[49] LBNL, Xerox PARC, UCB, and USC/ISI. The network simulator - ns-2.

[50] A. Dainotti, A. Pescap´e, and G. Ventre. A packet-level characterization of net-work traffic. InProc. of IEEE CAMAD, pp. 38–45, June 2006.

[51] 溝口理一郎. エキスパートシステムI,II. 朝倉書店, 1993.

国際会議

1. Ushio Ozeki, Toshinori Watanabe and Hisashi Koga, ”CTFI: Adaptive Pattern Analysis of Internet Traffic Using Time Series Compressibility”, In Proc. of the 19th International Conference on Systems, Signals and Image Processing IWSSIP, pp.372-375, 11-13 Apr. 2012, Wien Austria.(第4章の内容)

論文誌

1.大関 潮,古賀 久志,渡辺 俊典, 時系列圧縮性によるポリシー指向ネットワークモ ニタリング ,電子情報通信学会 論文誌A J98-A, No.4, Apr. 2015. (第5章の内容)

本論文をまとめるにあたり,多くの方々からご指導とご協力を頂きました.お世話に なった方々に深く感謝致します.

まず,渡辺俊典名誉教授と主指導教官の古賀久志准教授に深く感謝致します.渡辺先生 には本研究の方向性や主要技術について多くのご指導を頂きました.古賀先生の熱心なご 指導がなければ本論文を完成させる事は到底出来ませんでした.更に,南先生を含む審査 委員のご意見により,本論文の完成度を高める事ができました.また,南・古賀研究室の 皆様や情報システム学研究科の事務の方々,情報基盤センターの方々からも多くのご支援 を頂きました.ここに感謝致します.

また、最後になりますが,陰から支えてくれた家族に感謝致します.