Visualizing network events in a muggle friendly way

Outi-Marja Latvala, Tommi Keränen, Sami Noponen, Niko Lehto, Mirko Sailio, Mikko Valta, Pia Olli

    Research output: Chapter in Book/Report/Conference proceedingConference article in proceedingsScientificpeer-review

    6 Citations (Scopus)

    Abstract

    This paper describes a work in progress for a proof of concept which visualizes network events of an industrial automation system in a 3D fish tank view. It aims to enable an automation operator, who most likely is a non-network-expert, to spot anomalies in network traffic and also to memorise past seen anomalies more easily. The developed solution builds upon three components: a Snort event-log forwarder, a database and the 3D fish tank to visualize the events. Different kind of fishes were chosen to present network nodes, and how they move in the fish tank describes the event. Visualization system was implemented using the Unity game engine. As this is still a work in progress, more development is needed; especially adding functionality to visualize normal network traffic besides Snort events is crucial. However, the first version showed interest among people, as this differs from traditional network event visualizations.
    Original languageEnglish
    Title of host publication2017 International Conference On Cyber Situational Awareness, Data Analytics And Assessment, Cyber SA 2017
    PublisherIEEE Institute of Electrical and Electronic Engineers
    ISBN (Electronic)978-1-5090-5060-4
    ISBN (Print)978-1-5090-5061-1
    DOIs
    Publication statusPublished - 18 Oct 2017
    MoE publication typeA4 Article in a conference publication
    EventInternational Conference On Cyber Situational Awareness, Data Analytics And Assessment (Cyber SA) - London, United Kingdom
    Duration: 19 Jun 201720 Jun 2017

    Conference

    ConferenceInternational Conference On Cyber Situational Awareness, Data Analytics And Assessment (Cyber SA)
    Abbreviated titleCyber SA
    Country/TerritoryUnited Kingdom
    CityLondon
    Period19/06/1720/06/17

    Keywords

    • data visualization
    • security
    • monitoring
    • visualization
    • tools
    • communication networks
    • production facilities

    Fingerprint

    Dive into the research topics of 'Visualizing network events in a muggle friendly way'. Together they form a unique fingerprint.

    Cite this