A LITERATURE REVIEW OF NETWORK MONITORING THROUGH VISUALISATION AND THE INETVIS TOOL

Network infrastructure is growing rapidly and as a result, network trafc is expanding beyond the point where traditional approaches can still be used to eciently detect anomalies. To aid in overcoming this issue, modern approaches to trac monitoring need to be investigated. One particularly good way of representing large amounts of network trac is with the aid of data visualisation. InetVis, an interactive tool for visualisation, was developed in 2005 by J.P van Riel under the security and networks research group at Rhodes University. It displays trac in a 3 dimensional cube which uses source and destination addresses as well as port numbers for each dimension. Users have the ability to navigate through this 3D space through the use of a simple interface. In this paper, it is shown how easy detection and classication of anomalies can be done, as well as how ecient InetVis actually is.