Real-time P2P Traffic Identification

被引:0
作者
Li, Jun [1 ]
Zhang, Shunyi [1 ]
Lu, Yanqing [1 ]
Yan, Junrong [1 ]
机构
[1] Nanjing Univ Posts & Telecommun, Nanjing, Jiangsu, Peoples R China
来源
GLOBECOM 2008 - 2008 IEEE GLOBAL TELECOMMUNICATIONS CONFERENCE | 2008年
关键词
Peer-to-Peer; Traffic identification; Machine learning; Real-time identification;
D O I
10.1109/GLOCOM.2008.ECP.475
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Accurate and fast identification of network traffic is an important element of many network management tasks such as QoS provisioning and security monitoring. However, as many newly-emerged Peer-to-Peer (P2P) applications using dynamic port numbers, masquerading techniques, and payload encryption to avoid detection, the classical approaches based on port mapping and payload analysis are ineffective. An alternative approach is to classify traffic by distinguishing the behavior of an application within the first few packets of TCP connection. We pursue this approach and demonstrate that information of few packets is enough to effectively identify P2P traffic. In our work, C4.5 decision tree and REPTree are evaluated and compared with the previously used clustering method K-Means. Experimental results show that our approaches outperform K-Means algorithm in accuracy. In addition, the proposed approaches can accommodate known and unknown P2P traffic and even encrypted traffic in fast and accurate way, which ensures the real-time applications on the Internet traffic surveillance and QoS provisioning.
引用
收藏
页数:5
相关论文
共 14 条
  • [1] [Anonymous], 13 INT C WORLD WID W
  • [2] [Anonymous], ACM SIGCOMM COMPUTER
  • [3] [Anonymous], 2004, P 4 ACM SIGCOMM C IN
  • [4] Constantinou F, 2006, NCA 2006: FIFTH IEEE INTERNATIONAL SYMPOSIUM ON NETWORK COMPUTING AND APPLICATIONS, PROCEEDINGS, P93
  • [5] DEDINSKI I, 2005, 7 ANN INT WORK C ACT
  • [6] Erman Jeffrey, 2006, P 2006 SIGCOMM WORKS, P281
  • [7] HAFFNER P, 2005, SIGCOMM 05 WORKSH
  • [8] Active P2P traffic identification technique
    Jun, Li
    Shunyi, Zhang
    Shidong, Liu
    Ye, Xuan
    [J]. CIS: 2007 INTERNATIONAL CONFERENCE ON COMPUTATIONAL INTELLIGENCE AND SECURITY, PROCEEDINGS, 2007, : 37 - +
  • [9] BLINC: Multilevel traffic classification in the dark
    Karagiannis, T
    Papagiannaki, K
    Faloutsos, M
    [J]. ACM SIGCOMM COMPUTER COMMUNICATION REVIEW, 2005, 35 (04) : 229 - 240
  • [10] MADHUKAR A, MASCOTS 06, P179