ANTI: An Adaptive Network Traffic Indexing Algorithm for High-speed Networks

被引:0
|
作者
Chen, Jiale [1 ,2 ]
Chen, Xingshu [1 ,2 ,3 ]
Chen, Liangguo [1 ,2 ]
Lan, Xiao [2 ,3 ]
Luo, Yonggang [2 ,3 ]
机构
[1] Sichuan Univ, Sch Cyber Sci & Engn, Chengdu, Peoples R China
[2] Sichuan Univ, Key Lab Data Protect & Intelligent Management, Minist Educ, Chengdu, Peoples R China
[3] Sichuan Univ, Cyber Sci Res Inst, Chengdu, Peoples R China
基金
中国国家自然科学基金;
关键词
network traces; packet archiving; packet indexing; packet retrieval; radix tree;
D O I
10.1109/GLOBECOM54140.2023.10437924
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Network packets record communication behaviors and details, which is important for security audits, attack detection, and forensic analysis. For the effectiveness and timeliness of security analysis, it is necessary to fully store network packets and build an efficient packet index. However, the existing packet indexing algorithms based on the radix tree ignore the distribution characteristics of network traffic and use internal nodes with the same capacity for index construction, resulting in wasted disk space and poor retrieval performance. As a solution, we propose ANTI, an adaptive network traffic indexing algorithm similar to Adaptive Radix Tree, which can adaptively switch internal nodes with different capacity according to the density of network traffic and compress the common prefix and distinct suffix of traffic attributes to balance the index construction performance and space utilization. We also implement a packet-aware network traffic archiving and indexing system to achieve full packet archival, efficient indexing, and fast retrieval. Finally, we empirically evaluate ANTI in IPv4 (IPv6) traffic scenarios, and the results confirm the effectiveness of ANTI as well as the benefit of adopting ANTI for enhancing indexing and retrieval performance compared with other state-of-art algorithms.
引用
收藏
页码:1699 / 1704
页数:6
相关论文
共 50 条
  • [31] Weak convergence of high-speed network traffic models
    Resnick, S
    Van den Berg, E
    JOURNAL OF APPLIED PROBABILITY, 2000, 37 (02) : 575 - 597
  • [32] High-speed network traffic acquisition for agent systems
    Celeda, Pavel
    Krmicek, Vojtech
    Rehak, Martin
    Medvigy, David
    PROCEEDINGS OF THE IEEE/WIC/ACM INTERNATIONAL CONFERENCE ON INTELLIGENT AGENT TECHNOLOGY (IAT 2007), 2007, : 477 - +
  • [33] An Adaptive Multipath Algorithm to Overcome the Unpredictability of Heterogeneous Wireless Networks for High-Speed Railway
    Zhang, Yuyang
    Dong, Ping
    Yu, Shui
    Luo, Hongbin
    Zheng, Tao
    Zhang, Hongke
    IEEE TRANSACTIONS ON VEHICULAR TECHNOLOGY, 2018, 67 (12) : 11332 - 11344
  • [34] A probability-guaranteed adaptive timeout algorithm for high-speed network flow detection
    Wang, JF
    Li, L
    Sun, FC
    Zhou, MT
    COMPUTER NETWORKS, 2005, 48 (02) : 215 - 233
  • [35] HSWA-TCP: A New Traffic Control Algorithm for High-speed Satellite Communication Networks
    Ge Xiaohu
    Liu Jianhua
    Liu Yingzhuang
    Dong Yan
    CHINESE JOURNAL OF ELECTRONICS, 2009, 18 (04): : 729 - 734
  • [37] Distributed sampling measurement method of network traffic in high-speed IPv6 networks
    Pan Qiao
    Pei Changxing
    JOURNAL OF SYSTEMS ENGINEERING AND ELECTRONICS, 2007, 18 (04) : 835 - 840
  • [38] High-speed adaptive wireless body area networks
    Miftadi Sudjai
    Le Chung Tran
    Farzad Safaei
    Tadeusz Wysocki
    Son Lam Phung
    EURASIP Journal on Wireless Communications and Networking, 2016
  • [39] Efficient Visualization Framework for Real-Time Monitoring Network Traffic of High-Speed Networks
    Al, Aws Naser Jaber
    2021 IEEE INTERNATIONAL CONFERENCE ON BIG DATA (BIG DATA), 2021, : 5839 - 5841
  • [40] Multi-scale high-speed network traffic prediction using combination of neural networks
    Khotanzad, A
    Sadek, N
    PROCEEDINGS OF THE INTERNATIONAL JOINT CONFERENCE ON NEURAL NETWORKS 2003, VOLS 1-4, 2003, : 1071 - 1075