【24h】

Network Protocol Reverse Parsing Based on Bit Stream

机译:基于比特流的网络协议反向解析

获取原文

摘要

The network security problem brought by the cloud computing has become an important issue to be dealt with in information construction. Since anomaly detection and attack detection in cloud environment need to find the vulnerability through the reverse analysis of data flow, it is of great significance to carry out the reverse analysis of unknown network protocol in the security application of cloud environment. To solve this problem, an improved mining method on bitstream protocol association rules with unknown type and format is proposed. The method combines the location information of the protocol framework to make the frequent extraction process more concise and accurate. In addition, for the frame separation problem of unknown protocol, we design a hierarchical clustering algorithm based on Jaccard distance and a frame field delimitation method based on the proximity of information entropy between bytes. The experimental results show that this technology can correctly resolve the protocol format and realize the purpose of anomaly detection in cloud computing, and ensure the security of cloud services.
机译:云计算带来的网络安全问题已成为在信息建设中处理的重要问题。由于云环境中的异常检测和攻击检测需要通过数据流的反向分析找到漏洞,在云环境安全应用中执行未知网络协议的反向分析是具有重要意义。为了解决这个问题,提出了一种改进的比特流协议关联规则的挖掘方法,具有未知类型和格式。该方法组合了协议框架的位置信息,使频繁提取过程更简洁和准确。此外,对于未知协议的帧分离问题,我们基于Jaccard距离的分层聚类算法和基于信息熵在字节之间的信息熵的接近度。实验结果表明,该技术可以正确解决协议格式并实现云计算中异常检测的目的,并确保云服务的安全性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号