NTCA: A High-Performance Network Traffic Classification Architecture

被引:1
作者
Sun, Guanglu [1 ]
Dong, Hui [1 ]
Li, Dandan [1 ]
Xiao, Feng [1 ]
机构
[1] Harbin Univ Sci & Technol, Res Ctr Informat Secur & Intelligent Technol, Sch Comp Sci & Technol, Harbin, Heilongjiang, Peoples R China
来源
INTERNATIONAL JOURNAL OF FUTURE GENERATION COMMUNICATION AND NETWORKING | 2013年 / 6卷 / 05期
关键词
Traffic classification; Architecture; NTCA; High-performance;
D O I
10.14257/ijfgcn.2013.6.5.02
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
Traffic classification is critical to effective network control and management. Recent researches on Internet traffic classifications have developed several methods for identifying types of application, which have advantages in certain types of network traffic. However, these methods are powerless to measure the network traffic with dynamic port, encrypted payloads, mixing traffic, and real-time traffic. In response to the growing requirements of traffic classification for increasingly complex network environment, this paper introduces network traffic classification architecture (NTCA) with high performance. By combining port-based, signature string matching, regular expression matching, and machine learning methods, NTCA achieves high speed and accuracy traffic classification. The experimental results show that our proposed method is able to achieve over 95.0% in average accuracy for all testing traces.
引用
收藏
页码:11 / 20
页数:10
相关论文
共 14 条
  • [1] A PARAMETERIZABLE METHODOLOGY FOR INTERNET TRAFFIC FLOW PROFILING
    CLAFFY, KC
    BRAUN, HW
    POLYZOS, GC
    [J]. IEEE JOURNAL ON SELECTED AREAS IN COMMUNICATIONS, 1995, 13 (08) : 1481 - 1494
  • [2] Fernandes S., 2009, INFOCOM WORKSH 2009, P1
  • [3] On Metrics to Distinguish Skype Flows from HTTP Traffic
    Freire, Emanuel Pacheco
    Ziviani, Artur
    Salles, Ronaldo Moreira
    [J]. JOURNAL OF NETWORK AND SYSTEMS MANAGEMENT, 2009, 17 (1-2) : 53 - 72
  • [4] BLINC: Multilevel traffic classification in the dark
    Karagiannis, T
    Papagiannaki, K
    Faloutsos, M
    [J]. ACM SIGCOMM COMPUTER COMMUNICATION REVIEW, 2005, 35 (04) : 229 - 240
  • [5] Keys K., 2001, PASSIVE ACTIVE MEASU
  • [6] Kim H., 2008, P 2008 ACM C EMERGIN, P1, DOI DOI 10.1145/1544012.1544023
  • [7] Application-level traffic monitoring and an analysis on IP networks
    Kim, MS
    Won, YJ
    Hong, JWK
    [J]. ETRI JOURNAL, 2005, 27 (01) : 22 - 42
  • [8] Moore A., 2005, TECHNICAL REPORT
  • [9] Moore A. W., 2005, Performance Evaluation Review, V33, P50, DOI 10.1145/1071690.1064220
  • [10] Toward the accurate identification of network applications
    Moore, AW
    Papagiannaki, K
    [J]. PASSIVE AND ACTIVE NETWORK MEASUREMENT, PROCEEDINGS, 2005, 3431 : 41 - 54