Research Article

Improving the Accuracy of Network Intrusion Detection with Causal Machine Learning

Table 2

Description of features in the UNSW_NB15 dataset.

Feature nameDescription

Flow IDFlow id
SrcipSource Ip
SportSource port number
DstipDestination IP address
DsportDestination port number
ProtoRepresentation number of the protocol
DurRecord total duration
SpktsSource to destination packet count
DpktsDestination to source packet count
SjitSource jitter (mSec)
SintpktSource interpacket arrival time (mSec)
Ct_ftp_cmdNo of flows that has a command in ftp session
TcprttThe sum of “synack” and “ackdat” of the TCP
LtimeRecord last time