See this document in CiteSeerX!

Building a Time Machine for Efficient Recording and Retrieval of High-Volume Network Traffic (2005)  (Make Corrections)  
Stefan Kornexl, Vern Paxson, Holger Dreger, Anja Feldmann, Robin Sommer



  Home/Search   Context   Related

 
View or download:
imconf.net/imc2005/paper...kornexl.pdf
Cached:  PS.gz  PS  PDF   Image  Update  Help

From:  imconf.net/imc2005/pap...program (more)
(Enter author homepages)

Rate this article: (best)
  Comment on this article  
(Enter summary)

Abstract: There are times when it would be extraordinarily convenient to record the entire contents of a high-volume network traffic stream, in order to later "travel back in time" and inspect activity that has only become interesting in retrospect. Two examples are security forensics---determining just how an attacker compromised a given machine---and network trouble-shooting, such as inspecting the precursors to a fault after the fault. We describe the design and implementation of a Time Machine to... (Update)

Active bibliography (related documents):   More   All
0.1:   Intrusion Detection: A Bibliography - Mé, Michel (2001)   (Correct)
0.1:   The 10 Mbps Advanced Packet Vault - Antonelli, Coffman, Fields   (Correct)
0.1:   Design of a Log Server for Distributed and.. - Özgit, Dayioglu..   (Correct)

Similar documents based on text:
5.0:   Unknown -   (Correct)

BibTeX entry:   (Update)

@misc{ kornexl-building,
  author = "Stefan Kornexl and Vern Paxson and Holger Dreger and Anja Feldmann and
    Robin Sommer",
  title = "Building a Time Machine for Efficient Recording and Retrieval of High-Volume
    Network Traffic",
  url = "citeseer.ist.psu.edu/kornexl05building.html" }
Citations (may not include all citations):
610   Wide-Area Traffic: The Failure of Poisson Modeling - PAXSON, FLOYD - 1995
299   The BSD Packet Filter: A New Architecture for User-level Pac.. - MCCANNE, JACOBSON - 1993
123   Bro: A system for detecting network intruders in real-time - PAXSON - 1999
7   The Packet Vault: Secure Storage of Network Data (context) - ANTONELLI, UNDY et al. - 1999
1   A Methodology for Studying Persistency Aspects of Internet F.. (context) - WALLERICH, DREGER et al. - 2005
http://www.mcafeesecurity
http://www.tcpdump.org/

Documents on the same site (http://www.imconf.net/imc-2005/papers/program.html):   More
Novel Approaches to End-to-End Packet Reordering Measurement - Luo, Chang (2005)   (Correct)
Should Internet Service Providers Fear.. - Karagiannis.. (2005)   (Correct)
Predicting short-transfer latency from TCP arcana: A.. - Arlitt.. (2005)   (Correct)

Online articles have much greater impact   More about CiteSeer.IST   Add search form to your site   Submit documents   Feedback  

CiteSeer.IST - Copyright Penn State and NEC