Abstract: Information-theoretic metrics hold great promise for modeling traffic and detecting anomalies if only they could be computed in an efficient, scalable ways. Recent advances in streaming estimation algorithms give hope that such computations can be made practical. We describe our work in progress that aims to use streaming algorithms on 802.11a/b/g link layer (and above) features and feature pairs to detect anomalies.
PDF (82K)
Copyright © 2008 by Springer.
The copy made available here is the authors' version; for a definitive copy see the publisher's version described above.