Efficient Keyword Matching for Deep Packet Inspection based Network Traffic Classification

被引:0
作者
Khandait, Pratibha [1 ]
Hubballi, Neminath [1 ]
Mazumdar, Bodhisatwa [1 ]
机构
[1] Indian Inst Technol Indore, Discipline Comp Sci & Engn, Indore, Madhya Pradesh, India
来源
2020 INTERNATIONAL CONFERENCE ON COMMUNICATION SYSTEMS & NETWORKS (COMSNETS) | 2020年
关键词
Network Traffic Classification; Deep Packet Inspection; String Matching; State Transition Machine;
D O I
10.1109/comsnets48256.2020.9027353
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Network traffic classification has a range of applications in network management including QoS and security monitoring. Deep Packet Inspection (DPI) is one of the effective method used for traffic classification. DPI is computationally expensive operation involving string matching between payload and application signatures. Existing traffic classification techniques perform multiple scans of payload to classify the application flows - first scan to extract the words and the second scan to match the words with application signatures. In this paper we propose an approach which can classify network flows with single scan of flow payloads using a heuristic method to achieve a sub-linear search complexity. The idea is to scan few initial bytes of payload and determine potential application signature(s) for subsequent signature matching. We perform experiments with a large dataset containing 171873 network flows and show that it has a good classification accuracy of 98%.
引用
收藏
页数:4
相关论文
共 50 条
  • [21] Hybridization of Mean Shift Clustering and Deep Packet Inspected Classification for Network Traffic Analysis
    Kumar, Sathish A. P.
    Suresh, A.
    Anand, S. Raj
    Chokkanathan, K.
    Vijayasarathy, M.
    WIRELESS PERSONAL COMMUNICATIONS, 2022, 127 (01) : 217 - 233
  • [22] A Memory-Efficient Bit-Split Pattern Matching Architecture Using Shared Match Vectors for Deep Packet Inspection
    Kim, HyunJin
    IEICE TRANSACTIONS ON COMMUNICATIONS, 2012, E95B (11) : 3594 - 3596
  • [23] Hybridization of Mean Shift Clustering and Deep Packet Inspected Classification for Network Traffic Analysis
    Sathish A. P. Kumar
    A. Suresh
    S. Raj Anand
    K. Chokkanathan
    M. Vijayasarathy
    Wireless Personal Communications, 2022, 127 : 217 - 233
  • [24] Network traffic classification method based on deep forest
    Dai J.
    Wang T.
    Wang S.
    Guofang Keji Daxue Xuebao/Journal of National University of Defense Technology, 2020, 42 (04): : 30 - 34
  • [25] Adaptive Pattern Matching Grammar Generation for use in Deep Packet Inspection
    Menon, Govind
    Katdare, Sanchit
    Phatak, Sagar
    Khengare, Rahul
    UKSIM FIFTH EUROPEAN MODELLING SYMPOSIUM ON COMPUTER MODELLING AND SIMULATION (EMS 2011), 2011, : 119 - 122
  • [26] Algorithms to accelerate multiple regular expressions matching for deep packet inspection
    Kumar, Sailesh
    Dharmapurikar, Sarang
    Yu, Fang
    Crowley, Patrick
    Turner, Jonathan
    ACM SIGCOMM COMPUTER COMMUNICATION REVIEW, 2006, 36 (04) : 339 - 350
  • [27] A Hardware-Based String Matching Using State Transition Compression for Deep Packet Inspection
    Kim, HyunJin
    Lee, Seung-Woo
    ETRI JOURNAL, 2013, 35 (01) : 154 - 157
  • [28] Monitoring IoT Encrypted Traffic with Deep Packet Inspection and Statistical Analysis
    Deri, Luca
    Sartiano, Daniele
    INTERNATIONAL CONFERENCE FOR INTERNET TECHNOLOGY AND SECURED TRANSACTIONS (ICITST-2020), 2020, : 85 - 90
  • [29] Detecting and Blocking Onion Router Traffic Using Deep Packet Inspection
    Saputra, Ferry Astika
    Nadhori, Isbat Uzzin
    Barry, Balighani Fathul
    2016 INTERNATIONAL ELECTRONICS SYMPOSIUM (IES), 2016, : 283 - 288
  • [30] Traffic scheduling for deep packet inspection in software-defined networks
    Huang, Huawei
    Li, Peng
    Guo, Song
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2017, 29 (16)