• Title/Summary/Keyword: network based system monitoring

Search Result 1,160, Processing Time 0.029 seconds

A new perspective towards the development of robust data-driven intrusion detection for industrial control systems

  • Ayodeji, Abiodun;Liu, Yong-kuo;Chao, Nan;Yang, Li-qun
    • Nuclear Engineering and Technology
    • /
    • v.52 no.12
    • /
    • pp.2687-2698
    • /
    • 2020
  • Most of the machine learning-based intrusion detection tools developed for Industrial Control Systems (ICS) are trained on network packet captures, and they rely on monitoring network layer traffic alone for intrusion detection. This approach produces weak intrusion detection systems, as ICS cyber-attacks have a real and significant impact on the process variables. A limited number of researchers consider integrating process measurements. However, in complex systems, process variable changes could result from different combinations of abnormal occurrences. This paper examines recent advances in intrusion detection algorithms, their limitations, challenges and the status of their application in critical infrastructures. We also introduce the discussion on the similarities and conflicts observed in the development of machine learning tools and techniques for fault diagnosis and cybersecurity in the protection of complex systems and the need to establish a clear difference between them. As a case study, we discuss special characteristics in nuclear power control systems and the factors that constraint the direct integration of security algorithms. Moreover, we discuss data reliability issues and present references and direct URL to recent open-source data repositories to aid researchers in developing data-driven ICS intrusion detection systems.

Novel Maritime Wireless Communication based on Mobile Technology for the Safety of Navigation: LTE-Maritime focusing on the Cell Planning and its Verification

  • Shim, Woo-Seong;Kim, Bu-Young;Park, Chan-Yong;Lee, Byeong-Hyeok
    • Journal of Navigation and Port Research
    • /
    • v.45 no.5
    • /
    • pp.231-237
    • /
    • 2021
  • Enhancing the performance of maritime wireless communication has been highlighted by the issue of cell planning in the sea area because of lack of an appropriate Propagation Loss Model (PLM). To resolve the cell planning issue in vast sea areas, it was essential to develop the (PLM) matching the intended sea area. However, there were considerable gaps between the prediction of legacy PLMs and field measurement in propagation loss and there was a need to develop the adjusted PLM (A-PLM). Therefore, cell planning was performed on this adjusted model, including modification of the base station's location, altitude, and antenna azimuth to meet the quality objectives. Furthermore, in order to verify the availability of the cell planning, Communication Service Quality Monitoring System (CS-QMS) was developed in the LTE-Maritime project to collect LTE signal quality information from the onboard equipment at regular intervals and to ensure that the service quality was high enough to satisfy the goals in each designated grid. As a result of verification, the success rate of RSRP was 95.7% for the intensive management zone (IMZ) and 96.4% for the interested zone (IZ), respectively.

Condition assessment model for residential road networks

  • Salman, Alaa;Sodangi, Mahmoud;Omar, Ahmed;Alrifai, Moath
    • Structural Monitoring and Maintenance
    • /
    • v.8 no.4
    • /
    • pp.361-378
    • /
    • 2021
  • While the pavement rating system is being utilized for periodic road condition assessment in the Eastern Region municipality of Saudi Arabia, the condition assessment is costly, time-consuming, and not comprehensive as only few parts of the road are randomly selected for the assessment. Thus, this study is aimed at developing a condition assessment model for a specific sample of a residential road network in Dammam City based on an individual road and a road network. The model was developed using the Analytical Hierarchy Process (AHP) according to the defect types and their levels of severity. The defects were arranged according to four categories: structure, construction, environmental, and miscellaneous, which was adopted from sewer condition coding systems. The developed model was validated by municipality experts and was adjudged to be acceptable and more economical compared to results from the Eastern region municipality (Saudi Arabia) model. The outcome of this paper can assist with the allocation of the government's budget for maintenance and capital programs across all Saudi municipalities through maintaining road infrastructure assets at the required level of services.

Implementation of an APT Attack Detection System through ATT&CK-Based Attack Chain Reconstruction (ATT&CK 기반 공격체인 구성을 통한 APT 공격탐지 시스템 구현)

  • Cho, Sungyoung;Park, Yongwoo;Lee, Kyeongsik
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.32 no.3
    • /
    • pp.527-545
    • /
    • 2022
  • In order to effectively detect APT attacks performed by well-organized adversaries, we implemented a system to detect attacks by reconstructing attack chains of APT attacks. Our attack chain-based APT attack detection system consists of 'events collection and indexing' part which collects various events generated from hosts and network monitoring tools, 'unit attack detection' part which detects unit-level attacks defined in MITRE ATT&CK® techniques, and 'attack chain reconstruction' part which reconstructs attack chains by performing causality analysis based on provenance graphs. To evaluate our system, we implemented a test-bed and conducted several simulated attack scenarios provided by MITRE ATT&CK Evaluation program. As a result of the experiment, we were able to confirm that our system effectively reconstructed the attack chains for the simulated attack scenarios. Using the system implemented in this study, rather than to understand attacks as fragmentary parts, it will be possible to understand and respond to attacks from the perspective of progress of attacks.

Network Adaptive Quality of Service Method in Client/Server-based Streaming Systems (클라이언트/서버 기반 스트리밍 시스템에서의 네트워크 적응형 QoS 기법)

  • Zhung, Yon-il;Lee, Jung-chan;Lee, Sung-young
    • The KIPS Transactions:PartA
    • /
    • v.10A no.6
    • /
    • pp.691-700
    • /
    • 2003
  • Due to the fast development of wire&wireless internet and computer hardware, more and more internet services are being developed, such as Internet broadcast, VoD (Video On Demand), etc. So QoS (Qualify of Service) is essentially needed to guarantee the quality of these services. Traditional Internet is Best-Effort service in which all packets are transported in FIFO (First In First Out) style. However, FIFO is not suitable to guarantee the quality of some services, so more research in QoS router and QoS protocol are needed. Researched QoS router and protocol are high cost and inefficient because the existing infra is not used. To solve this problem, a new QoS control method, named Network Adaptive QoS, is introduced and applied to client/server-based streaming systems. Based on network bandwidth monitoring mechanism, network adaptive QoS control method can be used in wire&wireless networks to support QoS in real-time streaming system. In order to reduce application cost, the existing streaming service is used in NAQoS. A new module is integrated into the existing server and client. So the router and network line are not changed. By simulation in heavy traffic network conditions, we proved that stream cannot be seamless without network adaptive QoS method.

Efficient Load Balancing Technique through Server Load Threshold Alert in SDN (SDN 환경에서의 서버 부하 임계치 경고를 통한 효율적인 부하분산 기법)

  • Lee, Jun-Young;Kwon, Tea-Wook
    • The Journal of the Korea institute of electronic communication sciences
    • /
    • v.16 no.5
    • /
    • pp.817-824
    • /
    • 2021
  • The SDN(Software Defined Networking) technology, which appeared to overcome the limitations of the existing network system, resolves the rigidity of the existing system through the separation of HW and SW in network equipment. These characteristics of SDN provide wide scalability beyond hardware-oriented network equipment, and provide flexible load balancing policies in data centers of various sizes. In the meantime, many studies have been conducted to apply the advantages of SDN to data centers and have shown their effectiveness. The method mainly used in previous studies was to periodically check the server load and perform load balancing based on this. In this method, the more the number of servers and the shorter the server load check cycle, the more traffic increases. In this paper, we propose a new load balancing technique that can eliminate unnecessary traffic and manage server resources more efficiently by reporting to the controller when a specific level of load occurs in the server to solve this limitation.

Implementation of Unmanned Monitoring/Tracking System based on Wireless Sensor Network (무선 센서 네트워크 기반 무인 감시/추적 시스템의 구현)

  • Ahn, Il-Yeup;Lee, Sang-Shin;Kim, Jae-Ho;Song, Min-Hwan;Won, Kwang-Ho
    • Proceedings of the IEEK Conference
    • /
    • 2005.11a
    • /
    • pp.1019-1022
    • /
    • 2005
  • 본 논문에서는 현재 활발한 연구개발이 이루어지고 있는 유비쿼터스 컴퓨팅, 센서 네트워크 기술을 적용한 무인 감시/추적 시스템을 제시한다. 본 논문의 무인 감시/추적 시스템은 센서네트워크 기술, 다중센서 융합에 의한 탐지 및 위치 인식기술, 무인 감시/추적 알고리즘으로 구성되어 있다. 센서네트워크는 센싱 데이터를 실시간으로 전송하기 위해 노드의 주소를 기반으로 하는 계층적 멀티홉 라우팅 기법을 제안하였다. 침입자와 추적자의 위치 인식은 자기센서 및 초음파센서를 가진 센서모듈들로부터 얻어진 센싱 정보를 융합하고, 이를 확률적으로 침입자 및 추적자의 위치를 결정하는 Particle Filter를 적용한 위치인식 알고리즘을 통해 이루어진다. 추적 알고리즘은 무인 자율 추적을 위해 이동벡터에 기반한 알고리즘이다.

  • PDF

RNN NARX Model Based Demand Management for Smart Grid

  • Lee, Sang-Hyun;Park, Dae-Won;Moon, Kyung-Il
    • International Journal of Advanced Culture Technology
    • /
    • v.2 no.2
    • /
    • pp.11-14
    • /
    • 2014
  • In the smart grid, it will be possible to communicate with the consumers for the purposes of monitoring and controlling their power consumption without disturbing their business or comfort. This will bring easier administration capabilities for the utilities. On the other hand, consumers will require more advanced home automation tools which can be implemented by using advanced sensor technologies. For instance, consumers may need to adapt their consumption according to the dynamically varying electricity prices which necessitates home automation tools. This paper tries to combine neural network and nonlinear autoregressive with exogenous variable (NARX) class for next week electric load forecasting. The suitability of the proposed approach is illustrated through an application to electric load consumption data. The suggested system provides a useful and suitable tool especially for the load forecasting.

Welding Monitoring System using Neural Network based on WirelessUSB (신경회로망을 이용한 WirelessUSB 기반의 용접관리 시스템)

  • Kim, Ha-Na;Lee, Jun-Hee;Shin, Dong-Suk;Kang, Sung-In;Kim, Gwan-Hyung
    • Proceedings of the Korean Society of Computer Information Conference
    • /
    • 2009.01a
    • /
    • pp.9-12
    • /
    • 2009
  • 최근 무인 로봇 및 산업 자동화의 비약적인 발전으로 용접 분야에서도 무인화 및 자동화 시스템 구축이 활성화 되고 있다. 본 논문에서는 아크 용접 시스템의 주요한 용접 인자인 용접전류, 용접전압 정보를 PSoC 기반의 WirelessUSB를 이용하여 무선으로 모니터링 시스템에 전송하고 이를 신경회로망에 적용하여 용접 현상을 모니터링 하였다. 또한 산업 현장에도 일반화된 TCP/IP 통신을 이용하여 원격으로 관리가 가능하도록 구현하였다.

  • PDF

An web based IDC manageable Internet Service monitoring and management system (웹기반 IDC 관리형 Internet 서비스 모니터링 및 관리시스템)

  • 최혁수;정상준;김동주;권영헌;김종근
    • Proceedings of the Korea Multimedia Society Conference
    • /
    • 2002.11b
    • /
    • pp.31-34
    • /
    • 2002
  • IDC는 기업 및 개인 고객에게 전산 설비나 네트워크 설비를 유치하여 유지·보수 등의 서비스를 제공하는 곳으로, 서버 장비 및 통신장비의 운영과 관리를 대행하여 서버의 안정성, 보안성과 서버가 제공하는 서비스의 품질을 유지해 주는 시설이다. 하지만 학교나 일부기업에서는 자신들의 고유 서비스를 위해 호스트를 자신들의 NOC(Network Operation Center)에 놓아두게 되고, 그러면 IDC에서 지원하는 다양한 관리 서비스를 제공받지 못한다. 본 논문에서는 웹 기반 IDC 관리형 인터넷 서비스 모니터링 및 관리시스템의 구조를 제안하고 시스템을 구현한다. 웹에서 효과적인 모니터링 및 관리를 위하여 JAVA 기반의 설계를 하였으며, 인터넷 서비스에 대한 효율적인 관리를 위하여 ICMP 프로콜을 사용하였다. 제안된 시스템을 이용하여 원격지의 서버의 상태나 인터넷 서비스의 전반적인 상태를 일정하게 유지하며, 웹을 기반으로 하여 모니터링 및 관리를 할 수 있다. 중요 기능은 데이터의 주기적인 수집과, 수집된 정보를 데이터 베이스에 저장함으로써 네트워크의 상태 변화에 대한 지속적인 관찰이 가능하다. 또한 시스템에 어떤 문제가 발생하였다고 판단될 경우 효율적이고 신속한 대처가 이루어지도록 하기 위하여 관리자에게 보고서를 제출하게 된다.

  • PDF