Toward the Accurate Identification of Network Applications

有效载荷(计算) 计算机科学 跟踪(心理语言学) 背景(考古学) 鉴定(生物学) 深包检验 互联网 端口(电路理论) 网络数据包 数据挖掘 过程(计算) 多样性(控制论) 交通分类 互联网流量 人工智能 计算机网络 万维网 工程类 古生物学 哲学 语言学 植物 电气工程 生物 操作系统
作者
Andrew W. Moore,Konstantina Papagiannaki
标识
DOI:10.1007/978-3-540-31966-5_4
摘要

Well-known port numbers can no longer be used to reliably identify network applications. There is a variety of new Internet applications that either do not use well-known port numbers or use other protocols, such as HTTP, as wrappers in order to go through firewalls without being blocked. One consequence of this is that a simple inspection of the port numbers used by flows may lead to the inaccurate classification of network traffic. In this work, we look at these inaccuracies in detail. Using a full payload packet trace collected from an Internet site we attempt to identify the types of errors that may result from port-based classification and quantify them for the specific trace under study. To address this question we devise a classification methodology that relies on the full packet payload. We describe the building blocks of this methodology and elaborate on the complications that arise in that context. A classification technique approaching 100% accuracy proves to be a labor-intensive process that needs to test flow-characteristics against multiple classification criteria in order to gain sufficient confidence in the nature of the causal application. Nevertheless, the benefits gained from a content-based classification approach are evident. We are capable of accurately classifying what would be otherwise classified as unknown as well as identifying traffic flows that could otherwise be classified incorrectly. Our work opens up multiple research issues that we intend to address in future work.
最长约 10秒,即可获得该文献文件

科研通智能强力驱动
Strongly Powered by AbleSci AI
更新
大幅提高文件上传限制,最高150M (2024-4-1)

科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
渔舟唱晚发布了新的文献求助10
1秒前
wangjing发布了新的文献求助30
2秒前
聚乙二醇完成签到 ,获得积分10
3秒前
happy8le完成签到,获得积分10
3秒前
doctorw完成签到,获得积分10
4秒前
凊嗏淡墨完成签到,获得积分10
5秒前
浮沉完成签到,获得积分10
5秒前
conghuang完成签到,获得积分10
5秒前
得過且過完成签到 ,获得积分10
5秒前
allrubbish完成签到,获得积分10
5秒前
5秒前
hahaha完成签到,获得积分10
5秒前
125发布了新的文献求助20
6秒前
云飞扬完成签到 ,获得积分10
7秒前
云猫完成签到 ,获得积分10
8秒前
世上僅有的榮光之路完成签到,获得积分10
9秒前
hwzhou10完成签到,获得积分10
9秒前
happy8le发布了新的文献求助10
10秒前
jiemy完成签到,获得积分10
11秒前
li完成签到,获得积分10
12秒前
Regulus.完成签到,获得积分10
12秒前
xin_you完成签到,获得积分10
12秒前
凯卮完成签到,获得积分10
13秒前
14秒前
SSSSYYYY完成签到,获得积分10
15秒前
zgznb完成签到,获得积分10
16秒前
owlhealth完成签到,获得积分10
16秒前
Cheng完成签到 ,获得积分10
17秒前
xiaowang完成签到 ,获得积分10
17秒前
番茄炒蛋不要番茄le完成签到,获得积分10
18秒前
20秒前
aa关注了科研通微信公众号
21秒前
重要忆秋完成签到,获得积分10
21秒前
你一头牛牛牛牛完成签到,获得积分10
24秒前
ruby完成签到,获得积分10
25秒前
专注冬雪完成签到,获得积分10
25秒前
26秒前
爆米花应助科研通管家采纳,获得10
26秒前
无花果应助科研通管家采纳,获得10
26秒前
wsl完成签到 ,获得积分10
26秒前
高分求助中
Exploring Mitochondrial Autophagy Dysregulation in Osteosarcoma: Its Implications for Prognosis and Targeted Therapy 4000
Impact of Mitophagy-Related Genes on the Diagnosis and Development of Esophageal Squamous Cell Carcinoma via Single-Cell RNA-seq Analysis and Machine Learning Algorithms 2000
Evolution 1100
How to Create Beauty: De Lairesse on the Theory and Practice of Making Art 1000
Research Methods for Sports Studies 1000
Gerard de Lairesse : an artist between stage and studio 670
Assessment of Ultrasonographic Measurement of Inferior Vena Cava Collapsibility Index in The Prediction of Hypotension Associated with Tourniquet Release in Total Knee Replacement Surgeries under Spinal Anesthesia 500
热门求助领域 (近24小时)
化学 医学 生物 材料科学 工程类 有机化学 生物化学 内科学 物理 纳米技术 计算机科学 化学工程 复合材料 遗传学 基因 物理化学 催化作用 免疫学 病理 细胞生物学
热门帖子
关注 科研通微信公众号,转发送积分 2980320
求助须知:如何正确求助?哪些是违规求助? 2641426
关于积分的说明 7125148
捐赠科研通 2274394
什么是DOI,文献DOI怎么找? 1206494
版权声明 592018
科研通“疑难数据库(出版商)”最低求助积分说明 589477