Skip to main content

Distributed Network Packet Analysis Pipeline for Layer 2, 3 and 4 Frames

Project description

Python 3 AI-ready framework for recording network traffic in a data pipeline. Once recorded, you can train a deep neural network (DNN) to identify attack and non-attack traffic on your network. Included demo DNN has over 83% accuracy predicting attack vs non-attack records. Currently supports recording ethernet and arp (layer 2), ipv4, ipv6 and icmp (layer 3) and also tcp, udp frames (layer 4) frames and datagrams. Messages are auto-forwarded over to redis or rabbitmq for distributed processing in realtime. Why should I use this? This framework can help build, train and tune your own defensive machine learning models to help defend your own infrastructure at the network layer. Once the data is auto-saved as a csv file, then you can build models within Jupyter notebooks: https://github.com/jay-johnson/celery-connectors#running-jupyterhub-with-postgres-and-ssl or your ML/AI framework of choice. This pip also has an example for training a Keras Deep Neural Network model to predict attack and non-attack records using a captured and prepared dataset. There are test tools installed with this pip to quickly send mock: TCP, UDP, ARP and ICMP packets. This build currently utilizes scapy-python3 for packet recording: https://github.com/phaethon/scapy Future builds will utilize the multiprocessing engine included but does not filter src/dst ports correctly yet.The license will be full Apache 2 once that migration is done.

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

network-pipeline-1.0.32.tar.gz (48.1 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

network_pipeline-1.0.32-py2.py3-none-any.whl (137.7 kB view details)

Uploaded Python 2Python 3

File details

Details for the file network-pipeline-1.0.32.tar.gz.

File metadata

File hashes

Hashes for network-pipeline-1.0.32.tar.gz
Algorithm Hash digest
SHA256 6c0fc7e1deeac6f9b0681bf15f56e89a501b547f450b30e00a4f9fce5a2255b8
MD5 21fb11da4637a44567c4c31e2d61dffd
BLAKE2b-256 cab1b11dd2f01ad29ec027bd01fb459aad7706f5cfed7cd8ba85a265f202b17a

See more details on using hashes here.

File details

Details for the file network_pipeline-1.0.32-py2.py3-none-any.whl.

File metadata

File hashes

Hashes for network_pipeline-1.0.32-py2.py3-none-any.whl
Algorithm Hash digest
SHA256 236e58eeecd0224054a0b355c1c4b62dec6d1599e8168a5cad05e165e043096c
MD5 fa374194c2704e3cd3896ca20974b86f
BLAKE2b-256 d0aaf7451e7cfa7cd313000d287fd76f75b19ef5dbbc36874ba0705f29158d4f

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page