Hypersparse Traffic Matrices from Suricata Network Flows using GraphBLAS

Autor: Houle, Michael, Jones, Michael, Wallmeyer, Dan, Brodeur, Risa, Burr, Justin, Jananthan, Hayden, Merrell, Sam, Michaleas, Peter, Perez, Anthony, Prout, Andrew, Kepner, Jeremy
Rok vydání: 2024
Předmět:
Druh dokumentu: Working Paper
Popis: Hypersparse traffic matrices constructed from network packet source and destination addresses is a powerful tool for gaining insights into network traffic. SuiteSparse: GraphBLAS, an open source package or building, manipulating, and analyzing large hypersparse matrices, is one approach to constructing these traffic matrices. Suricata is a widely used open source network intrusion detection software package. This work demonstrates how Suricata network flow records can be used to efficiently construct hypersparse matrices using GraphBLAS.
Databáze: arXiv