Internet Traffic Classification by Aggregating Correlated Naive Bayes Predictions

被引:133
作者
Zhang, Jun [1 ]
Chen, Chao [1 ]
Xiang, Yang [1 ]
Zhou, Wanlei [1 ]
Xiang, Yong [1 ]
机构
[1] Deakin Univ, Sch Informat Technol, Melbourne, Vic 3125, Australia
基金
澳大利亚研究理事会;
关键词
Traffic classification; network security; naive Bayes; SUPPORT VECTOR MACHINES;
D O I
10.1109/TIFS.2012.2223675
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
This paper presents a novel traffic classification scheme to improve classification performance when few training data are available. In the proposed scheme, traffic flows are described using the discretized statistical features and flow correlation information is modeled by bag-of-flow (BoF). We solve the BoF-based traffic classification in a classifier combination framework and theoretically analyze the performance benefit. Furthermore, a new BoF-based traffic classification method is proposed to aggregate the naive Bayes (NB) predictions of the correlated flows. We also present an analysis on prediction error sensitivity of the aggregation strategies. Finally, a large number of experiments are carried out on two large-scale real-world traffic datasets to evaluate the proposed scheme. The experimental results show that the proposed scheme can achieve much better classification performance than existing state-of-the-art traffic classification methods.
引用
收藏
页码:5 / 15
页数:11
相关论文
共 34 条
  • [31] A preliminary performance comparison of five machine learning algorithms for practical IP traffic flow classification
    Williams, Nigel
    Zander, Sebastian
    Armitage, Grenville
    [J]. ACM SIGCOMM COMPUTER COMMUNICATION REVIEW, 2006, 36 (05) : 7 - 15
  • [32] Flexible Deterministic Packet Marking: An IP Traceback System to Find the Real Source of Attacks
    Xiang, Yang
    Zhou, Wanlei
    Guo, Minyi
    [J]. IEEE TRANSACTIONS ON PARALLEL AND DISTRIBUTED SYSTEMS, 2009, 20 (04) : 567 - 580
  • [33] A novel semi-supervised approach for network traffic clustering
    Wang Y.
    Xiang Y.
    Zhang J.
    Yu S.
    [J]. Proceedings - 2011 5th International Conference on Network and System Security, NSS 2011, 2011, : 169 - 175
  • [34] Zander S, 2005, LCN 2005: 30TH CONFERENCE ON LOCAL COMPUTER NETWORKS, PROCEEDINGS, P250