Open Access System for Information Sharing

Login Library

 

Conference
Cited 0 time in webofscience Cited 0 time in scopus
Metadata Downloads

Log Analysis and Prediction for Anomaly Detection in Network Switches

Title
Log Analysis and Prediction for Anomaly Detection in Network Switches
Authors
HONG, WON KINam, SukhyunEUIDONG, JEONGJIBUM, HONGYOO, JAE HYOUNGHong, James Won-Ki
Date Issued
2023-11-02
Publisher
Institute of Electrical and Electronics Engineers Inc.
Abstract
In this study, we propose a three-step anomaly detection system for network switches. The proposed system consists of the following steps: 1) Log parsing, where log messages from switches are analyzed to identify patterns and events, 2) Analysis of the identified event flow to distinguish normal and abnormal event sequences, and 3) Prediction of the next log message, with detection of anomalies if the predicted log message differs from the normal log messages. For event classification, a log parser is proposed by modifying existing algorithms, and experimental results confirm that similar log patterns are correctly classified into the same event. To learn normal event sequences, both FSM and LSTM models are trained. Lastly, we proposed a BERT-LSTM model to predict the next log message and detect unexpected log messages. The proposed system is validated using data collected from a constructed testbed and achieves a high-performance level with an F1 score of 83.72%. Notably, our system achieved a recall of 94.74%. Our system has an advantage in that if misclassified cases occur, network administrators can retrain each model to improve precision during system operation.
URI
https://oasis.postech.ac.kr/handle/2014.oak/121087
Article Type
Conference
Citation
19th International Conference on Network and Service Management, CNSM 2023, 2023-11-02
Files in This Item:
There are no files associated with this item.

qr_code

  • mendeley

Items in DSpace are protected by copyright, with all rights reserved, unless otherwise indicated.

Related Researcher

Researcher

홍원기HONG, WON KI
Dept of Computer Science & Enginrg
Read more

Views & Downloads

Browse