Journals / Bilişim Teknolojileri Dergisi / 2019 / Cilt: 12 - Sayı: 3

An Ontology Development for Anomaly Detection in File Integration Domain

Dosya Entegrasyonu Etki Alanında Anomali Tespiti İçin Bir Ontoloji Geliştirimi

Pages
239–252
DOI
—

Abstract

Nowadays, there has been an enormous increase in the variety of data storage and software development technologies. Integration and diversity in collaborative organizations emerge as a fundamental problem due to the rapidly evolving and changing technologies. In this context, file integration comes out as an effective solution in order to integrate data between different business platforms. Thus, routine business processes and business logic of different electronic systems could be automated. Anomaly detection is a data analysis process that detects abnormal situations in systems. Anomaly detection provides an awareness for the unexpected situations in information based systems and the fulfillment of necessary actions against anomalies that do not comply with the expected behavior. Therefore, anomaly detection is an important data analysis process to detect anomalies that occur in file integrations. In this study, an ontology based approach is presented in order to detect anomalies in file integration systems. Anomaly detection in file integrations is important in terms of availability which is one of the component of information security triad (confidentiality, integrity, availability). Most of the anomalies in integrations are oriented to data integrity and these anomalies can be detected from the transfer time or the incoming file size. In the proposed ontological approach, the file integrations made to a sample system are being queried and anomalies that occur in the integration processes are being detected. The proposed approach is intended to provide an ontology-based solution to data integrity and availability (anomalies that can stop the file flow) in the file integration systems.

Özet

Günümüzde, veri depolama ve yazılım geliştirme teknolojilerinin çeşitliliğinde büyük bir artış yaşanmıştır. Hızla gelişen ve değişen teknolojiler sebebiyle, ortak çalışan organizasyonlardaki entegrasyon ve çok çeşitlilik, temel bir sorun olarak ortaya çıkmaktadır. Bu kapsamda dosya entegrasyonları, farklı iş platformları arasındaki veri bütünleştirmesine yardımcı olan etkili bir çözüm olarak sunulmaktadır. Böylelikle, farklı elektronik sistemler arasındaki rutin iş süreçleri ve iş mantıkları otomatize edilebilmektedir. Anomali tespiti, sistemlerde meydana gelebilecek anormal durumları tespit eden bir veri analiz işlemidir. Anomali tespiti, bilgi tabanlı sistemlerde beklenmedik durumlara karşı farkındalık ve beklenen davranışa uymayan anomaliler karşısında gerekli eylemlerin yerine getirilmesini sağlamaktadır. Bu nedenle, anomali tespiti dosya entegrasyonlarında meydana gelen anomalilerin tespiti için önemli bir veri analizi işlemidir. Bu çalışma kapsamında, dosya entegrasyonu sistemlerinde gerçekleşen anomalileri tespit edebilmek için ontoloji tabanlı bir yaklaşım sunulmaktadır. Dosya entegrasyonlarında anormalliklerin tespiti, bilgi güvenliği üçlüsünden (gizlilik, bütünlük ve kullanılabilirlik) biri olan kullanılabilirlik açısından önemlidir. Entegrasyonlardaki anomalilerin büyük bir kısmı veri bütünlüğüne yöneliktir ve bu anomaliler transfer süresinden ya da gelen dosya boyutundan tespit edilerek yakalanabilmektedir. Önerilen ontolojik yaklaşımda, örnek bir sisteme yapılan dosya entegrasyonları sorgulanarak entegrasyon işlemlerinde meydana gelen anomaliler tespit edilebilmektedir. Önerilen yaklaşımın, dosya entegrasyon sistemlerinde veri bütünlüğüne ve kullanılabilirliğe (dosya akışını durdurabilecek anomaliler) yönelik anormal durumlara karşı ontoloji bazlı bir çözüm sunması amaçlanmaktadır.