The objective in developing this program, as part of a research, was for DDoS attack detection and mitigation. The incoming traffic statistics is aggregated in the form of flow-table, then converted to corresponding time series data. From then on, it is a time series analysis problem. Initial part of this research is published in the following work.
Lotfalizadeh, Hamidreza, and Dongso S. Kim. "Investigating real-time entropy features of DDoS attack based on categorized partial-flows." 2020 14th International Conference on Ubiquitous Information Management and Communication (IMCOM). IEEE, 2020.