ANTI: An Adaptive Network Traffic Indexing Algorithm for High-speed Networks

被引:0
|
作者
Chen, Jiale [1 ,2 ]
Chen, Xingshu [1 ,2 ,3 ]
Chen, Liangguo [1 ,2 ]
Lan, Xiao [2 ,3 ]
Luo, Yonggang [2 ,3 ]
机构
[1] Sichuan Univ, Sch Cyber Sci & Engn, Chengdu, Peoples R China
[2] Sichuan Univ, Key Lab Data Protect & Intelligent Management, Minist Educ, Chengdu, Peoples R China
[3] Sichuan Univ, Cyber Sci Res Inst, Chengdu, Peoples R China
基金
中国国家自然科学基金;
关键词
network traces; packet archiving; packet indexing; packet retrieval; radix tree;
D O I
10.1109/GLOBECOM54140.2023.10437924
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Network packets record communication behaviors and details, which is important for security audits, attack detection, and forensic analysis. For the effectiveness and timeliness of security analysis, it is necessary to fully store network packets and build an efficient packet index. However, the existing packet indexing algorithms based on the radix tree ignore the distribution characteristics of network traffic and use internal nodes with the same capacity for index construction, resulting in wasted disk space and poor retrieval performance. As a solution, we propose ANTI, an adaptive network traffic indexing algorithm similar to Adaptive Radix Tree, which can adaptively switch internal nodes with different capacity according to the density of network traffic and compress the common prefix and distinct suffix of traffic attributes to balance the index construction performance and space utilization. We also implement a packet-aware network traffic archiving and indexing system to achieve full packet archival, efficient indexing, and fast retrieval. Finally, we empirically evaluate ANTI in IPv4 (IPv6) traffic scenarios, and the results confirm the effectiveness of ANTI as well as the benefit of adopting ANTI for enhancing indexing and retrieval performance compared with other state-of-art algorithms.
引用
收藏
页码:1699 / 1704
页数:6
相关论文
共 50 条
  • [1] Adaptive admission control of multimedia traffic in high-speed networks
    Jagannathan, S
    Tohmaz, A
    Chronopoulos, A
    Cheung, HG
    PROCEEDINGS OF THE 2002 IEEE INTERNATIONAL SYMPOSIUM ON INTELLIGENT CONTROL, 2002, : 728 - 733
  • [2] High-speed network traffic
    Katsaggelos, AK
    IEEE SIGNAL PROCESSING MAGAZINE, 2002, 19 (03) : 2 - +
  • [3] A HYBRID ESTIMATION ALGORITHM FOR TRAFFIC MATRIX IN HIGH-SPEED NETWORKS
    Jiang, Dingde
    Yao, Chunping
    Xu, Zhengzheng
    Yao, Cheng
    2011 INTERNATIONAL CONFERENCE ON INSTRUMENTATION, MEASUREMENT, CIRCUITS AND SYSTEMS (ICIMCS 2011), VOL 2: FUTURE COMMUNICATION AND NETWORKING, 2011, : 273 - 276
  • [4] Network traffic characterization for high-speed networks supporting multimedia
    Elleithy, KM
    Al-Suwaiyan, AS
    34TH ANNUAL SIMULATION SYMPOSIUM, PROCEEDINGS, 2001, : 200 - 207
  • [5] TRAFFIC ENGINEERING FOR HIGH-SPEED NETWORKS
    KUHN, PJ
    IFIP TRANSACTIONS C-COMMUNICATION SYSTEMS, 1992, 5 : 7 - 25
  • [6] A new 10 Gbps traffic management algorithm for high-speed networks
    Fereydouni-Forouzandeh, Fariborz
    Mohamed, Otmane Ait
    2007 IEEE INTERNATIONAL SYMPOSIUM ON CIRCUITS AND SYSTEMS, VOLS 1-11, 2007, : 2510 - 2513
  • [7] High-speed network traffic model
    Shang, FJ
    Tang, H
    PROCEEDINGS OF THE THIRD INTERNATIONAL SYMPOSIUM ON INSTRUMENTATION SCIENCE AND TECHNOLOGY, VOL 1, 2004, : 529 - 533
  • [8] Network intrusion detection systems in high-speed traffic in computer networks
    Bul'ajoul, Waleed
    James, Anne
    Pannu, Mandeep
    2013 IEEE 10TH INTERNATIONAL CONFERENCE ON E-BUSINESS ENGINEERING (ICEBE), 2013, : 168 - 175
  • [9] Adaptive traffic enforcement control mechanism for LANs interconnected by a high-speed network
    Univ of Ottawa, Ottawa, Canada
    Comput Commun, 2 (113-123):
  • [10] Adaptive traffic enforcement control mechanism for LANs interconnected by a high-speed network
    OrozcoBarbosa, L
    Hirzalla, N
    COMPUTER COMMUNICATIONS, 1996, 19 (02) : 113 - 123