Visualizing Real-Time Network Resource Usage

  • Authors:
  • Ryan Blue;Cody Dunne;Adam Fuchs;Kyle King;Aaron Schulman

  • Affiliations:
  • Department of Computer Science, University of Maryland, College Park;Department of Computer Science, University of Maryland, College Park;Department of Computer Science, University of Maryland, College Park;Department of Computer Science, University of Maryland, College Park;Department of Computer Science, University of Maryland, College Park

  • Venue:
  • VizSec '08 Proceedings of the 5th international workshop on Visualization for Computer Security
  • Year:
  • 2008

Quantified Score

Hi-index 0.00

Visualization

Abstract

We present NetGrok, a tool for visualizing computer network usage in real-time. NetGrok combines well-known information visualization techniques--overview, zoom & filter, details on demand--with network graph and treemap visualizations. NetGrok integrates these tools with a shared data store that can read PCAP-formatted network traces, capture traces from a live interface, and filter the data set dynamically by bandwidth, number of connections, and time. We performed an expert user case study that demonstrates the benefits of applying these techniques to static and real-time streaming packet data. Our user study shows NetGrok serves as an "excellent real-time diagnostic," enabling fast understanding of network resource usage and rapid anomaly detection.