首页> 外文会议>International Workshop on Big Data and Information Security >Flow-based traffic retrieval using statistical features
【24h】

Flow-based traffic retrieval using statistical features

机译:使用统计功能基于流量的流量检索

获取原文

摘要

This paper proposes a new technique, flow-based traffic retrieval (FBTR), to find traffic flows that satisfy an information need from within large collections of network traffic. It is shown that flow-based traffic retrieval will become a powerful tool in network management and security. For example, the retrieved traffic flows can be used to help analysing new applications/protocols and detecting unknown attacks. In the context of flow-based traffic retrieval, a traffic flow is represented by a vector that consists of a set of flow statistics, such as the average of packet sizes and the average of inter-packet times. The user can submit a traffic flow, or several traffic flows, and ask for “similar” traffic flows to be retrieved from a traffic collection. Similarity search is based on comparing flow vectors in a feature space. We have done some preliminary experiments to evaluate the performance of flow-based traffic retrieval. The results show flow-based traffic retrieval has potential to quickly and accurately find user-interested network traffic, even encrypted traffic.
机译:本文提出了一种新技术,即基于流的流量检索(FBTR),以从大量网络流量中找到满足信息需求的流量。结果表明,基于流的流量检索将成为网络管理和安全性的强大工具。例如,检索到的业务流可用于帮助分析新的应用程序/协议并检测未知攻击。在基于流的流量检索的上下文中,流量由包含一组流量统计信息(例如数据包大小的平均值和数据包间时间的平均值)的向量表示。用户可以提交一个或多个交通流,并要求从交通集合中检索“相似”交通流。相似度搜索基于对特征空间中的流向量进行比较。我们已经进行了一些初步的实验,以评估基于流的流量检索的性能。结果表明,基于流的流量检索具有快速准确地找到用户感兴趣的网络流量(甚至是加密流量)的潜力。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号