Netinfo Security ›› 2016, Vol. 16 ›› Issue (10): 8-14.doi: 10.3969/j.issn.1671-1122.2016.10.002

• Orginal Article • Previous Articles     Next Articles

Multiple View Cooperative Visual Analytics of Network Operation Log

Jinsong WANG1,2,3(), Jingyun HUANG1,2,3, Hongwei ZHANG1,2,3, Huirong NAN1,2,3   

  1. 1. School of Computer and Communication Engineering, Tianjin University of Technology, Tianjin 300384, China
    2. Tianjin Key Laboratory of Intelligence Computing and Novel Software Technology, Tianjin 300384, China
    3. National Engineering Laboratory for Computer Virus Prevention and Control Technology, Tianjin300457, China
  • Received:2016-08-10 Online:2016-10-31 Published:2020-05-13

Abstract:

Network operation log is the main source of information for network managers to master the state of the network. After dealing with the network operation data and according to the feature analysis, this paper presents a collaborative visual analyze system for network operation log, it provides multiple views with direct and rich interactions to modeling the data from different aspects. Force graph, stack graph and heat map are introduced to the visualization of network security. By collaborative visual analytics can help network administrators understand the structure of the whole network and the operating characteristics of the network. The system includes two modules. One is to analyze the network structure by three dimensions, port, connection and flow, and then distinguish the hosts between servers and clients. The other is to analyze the anomalies of the whole network by the overall flow situation, and then to find communication modes by time dimension.

Key words: network visualization, visualization analytics, network communication mode, collaborative analytics

CLC Number: