What is UPFRAME?
We published a paper on UPFrame at IEEE IWCIP 2005, see
"A Framework for Real-Time Worm Attack Detection and Backbone Monitoring" on
the DDoSVax publication page.
UPFRAME is an application framework that is able to:
-
Receive and process incoming UDP packets at fast rates
-
Buffer several megabytes of incoming data to smoothen out data bursts
-
Feed the received packets to plugins that independently
process the data in the packets
Features
-
The framework was designed to be fast, stable and resource efficient.
-
There are mechanisms that ensure the proper operation of the
framework even in case of a malfunctioning plugin.
-
The current operational state of the framework like buffer allocation, number of
incoming packets etc. can be observed using a web interface.
System Requirements
Licensing, Documentation and Contact
This package is released under GPL.
The UPFrame documentation is available in the download section.
For comments, suggestions, contribution of your plugins and code, and bug reports please send e-mail to
upframe@tik.ee.ethz.ch.
|