For the integration between the SDA and the DCP, the proposed architecture is as follows:
The DCP component will consume this schema Raw Netflow Data + Aggregated features as input and using the Preprocessing application and Anonymization service will produce the schema Anonymized & Preprocessed Netflow Data + Aggregated features (3):
The zeek_extra_field is an extra field to be added because is needed to be consider and filled by the Zeek monitoring component in PALANTIR.
According to the final decision (#126), the Cryptomining Detection System (CDS) consumes directly the schema of the data provided by the DCP component. The CDS needs to be updated to consider the order of fields described in the previous schema Anonymized & Preprocessed Netflow Data + Aggregated features.
For the integration between the SDA and the DCP, the proposed architecture is as follows:
Raw Netflow Data
+Aggregated features
as input and using the Preprocessing application and Anonymization service will produce the schemaAnonymized & Preprocessed Netflow Data
+Aggregated features
(3):According to the final decision (#126), the Cryptomining Detection System (CDS) consumes directly the schema of the data provided by the DCP component. The CDS needs to be updated to consider the order of fields described in the previous schema
Anonymized & Preprocessed Netflow Data
+Aggregated features
.