Common abstractions Packets are grouped together into streams based on header fields Traffic matrix- by source and destination as >DoS attacks- by destination IP address Measuring large streams(this paper Estimating the number of active streams(poster SIGCOMM 2002SIGCOMM 2002 Common abstractions • Packets are grouped together into streams based on header fields ➢Traffic matrix – by source and destination AS ➢DoS attacks – by destination IP address • Measuring large streams (this paper) • Estimating the number of active streams (poster) • …