...
首页> 外文期刊>Computer networks >Grano-GT: A granular ground truth collection tool for encrypted browser-based Internet traffic
【24h】

Grano-GT: A granular ground truth collection tool for encrypted browser-based Internet traffic

机译:grano-gt:加密基于浏览器的Internet流量的粒度地面真实性收集工具

获取原文
获取原文并翻译 | 示例
   

获取外文期刊封面封底 >>

       

摘要

Modern network traffic classification puts much attention toward producing a granular classification of the traffic, such as at the application service level. However, the classification process is often impaired by the lack of granular network traffic ground truth. Granular network traffic ground truth is critical to provide a benchmark for a fair evaluation of modern network traffic classification. Nevertheless, in modern network traffic classification, existing ground truth tools only managed to build the ground truth at the application name level at most. Application name level granularity is quickly becoming insufficient to address the current needs of network traffic classification and therefore; this paper presents the design, development and experimental evaluation of Grano-GT, a tool to build a reliable and highly granular network traffic ground truth for encrypted browser-based traffic at the application name and service levels. Grano-GT builds on four main engines which are packet capture, browser, application and service isolator engines. These engines work together to intercept the application requests and combine them with the support of temporal features and cascading filters to produce reliable and highly granular ground truth. Preliminary experimental results show that Grano-GT can classify the Internet traffic into respective application names with high reliability. Grano-GT achieved an average accuracy of more than 95% when validated using nDPI at the application name level. The remaining 5% loss of accuracy was primarily due to the unavailability of signatures in nDPI. In addition, Grano-GT managed to classify application service traffic with significant reliability and validated using the Kolmogorov-Smirnov test.
机译:现代网络流量分类非常重视生产流量的粒度分类,例如在申请服务水平。然而,缺乏粒度网络交通原理真理往往损害分类过程。粒度网络交通地面真理对于为现代网络流量分类提供公平评估的基准至关重要。然而,在现代网络流量分类中,现有的地面真理工具仅设法最多设法在应用程序名称级别构建地面真理。应用名称级别粒度很快不足以解决当前网络流量分类的需求;因此;本文介绍了Grano-GT的设计,开发和实验评估,该工具为应用程序名称和服务级别为加密浏览器的流量构建可靠和高度粒度的网络交通原始事实。 Grano-GT在四个主机上构建,该发动机是数据包捕获,浏览器,应用程序和服务隔离引擎。这些引擎共同努力拦截应用程序请求,并将它们与时间特征和级联滤波器的支持相结合,以产生可靠且高度粒度的地面真理。初步实验结果表明,Grano-GT可以将互联网流量分类为具有高可靠性的各个应用程序名称。当在应用程序名称级别使用NDPI验证时,Grano-GT在验证时实现了95%以上的平均精度。剩下的5%的准确性损失主要是由于NDPI中的签名不可用。此外,Grano-GT管理以分类应用程序服务流量,具有显着的可靠性并使用Kolmogorov-Smirnov测试进行验证。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号