Network application profiling with traffic causality graphs

被引:14
|
作者
Asai, Hirochika [1 ]
Fukuda, Kensuke [2 ]
Abry, Patrice [3 ]
Borgnat, Pierre [3 ]
Esaki, Hiroshi [1 ]
机构
[1] Univ Tokyo, Grad Sch Informat Sci & Technol, Tokyo 1138654, Japan
[2] NII, Tokyo, Japan
[3] Ecole Normale Super Lyon, CNRS, F-69364 Lyon, France
关键词
Graph mining; Identification; Network application profiling; Traffic causality graph;
D O I
10.1002/nem.1865
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
A network application profiling framework is proposed that is based on traffic causality graphs (TCGs), representing temporal and spatial causality of flows to identify application programs. The proposed framework consists of three modules: the feature vector space construction using discriminative patterns extracted from TCGs by a graph-mining algorithm; a feature vector supervised learning procedure in the constructed vector space; and an application identification program using a similarity measure in the feature vector space. Accuracy of the proposed framework for application identification is evaluated, making use of ground truth packet traces from seven peer-to-peer (P2P) application programs. It is demonstrated that this framework achieves an overall 90.0% accuracy in application identification. Contributions are twofold: (1) using a graph-mining algorithm, the proposed framework enables automatic extraction of discriminative patterns serving as identification features; 2) high accuracy in application identification is achieved, notably for P2P applications that are more difficult to identify because of their using random ports and potential communication encryption. Copyright (C) 2014 John Wiley & Sons, Ltd
引用
收藏
页码:289 / 303
页数:15
相关论文
共 50 条
  • [21] Profiling and Identifying Users' Activities With Network Traffic Analysis
    Tao, Ma
    Ming, Ye Chun
    Juan, Chen
    PROCEEDINGS OF 2015 6TH IEEE INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING AND SERVICE SCIENCE, 2015, : 503 - 506
  • [22] A real-time network traffic profiling system
    Xu, Kuai
    Wang, Feng
    Bhattacharyya, Supratik
    Zhang, Zhi-Li
    37TH ANNUAL IEEE/IFIP INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS AND NETWORKS, PROCEEDINGS, 2007, : 595 - +
  • [23] Internet Traffic Behavior Profiling for Network Security Monitoring
    Xu, Kuai
    Zhang, Zhi-Li
    Bhattacharyya, Supratik
    IEEE-ACM TRANSACTIONS ON NETWORKING, 2008, 16 (06) : 1241 - 1252
  • [24] User Profiling Using Smartphone Network Traffic Analysis
    Bahuguna, Ayush
    Agrawal, Ankit
    Bhatia, Ashutosh
    Tiwari, Kamlesh
    Vishwakarma, Deepak
    2021 INTERNATIONAL CONFERENCE ON COMMUNICATION SYSTEMS & NETWORKS (COMSNETS), 2021, : 69 - 73
  • [25] Application of the Spectra of Graphs in Network Forensics
    Easttom, Chuck
    Adda, Mo
    2021 IEEE 11TH ANNUAL COMPUTING AND COMMUNICATION WORKSHOP AND CONFERENCE (CCWC), 2021, : 846 - 852
  • [26] Simulation of network traffic and its application
    Zhang, BY
    Sun, YM
    2004 8TH INTERNATIONAL CONFERENCE ON CONTROL, AUTOMATION, ROBOTICS AND VISION, VOLS 1-3, 2004, : 2185 - 2187
  • [27] The Application of SCOOT in Modern Traffic Network
    Ming Wei
    Qin Yong
    Xu Jie
    PROCEEDINGS OF INTERNATIONAL SYMPOSIUM - MANAGEMENT, INNOVATION & DEVELOPMENT (MID2014), 2014, : 393 - 400
  • [28] Using relational graphs for exploratory analysis of network traffic data
    Cermak, Milan
    Fritzova, Tatiana
    Rusnak, Vit
    Sramkova, Denisa
    FORENSIC SCIENCE INTERNATIONAL-DIGITAL INVESTIGATION, 2023, 45
  • [29] Genetic Programming Based Network Traffic-Profiling System
    Ekmanis, M.
    ELEKTRONIKA IR ELEKTROTECHNIKA, 2009, (04) : 49 - 52
  • [30] A Spatial-Temporal Approach for Multi-Airport Traffic Flow Prediction Through Causality Graphs
    Du, Wenbo
    Chen, Shenwen
    Li, Zhishuai
    Cao, Xianbin
    Lv, Yisheng
    IEEE TRANSACTIONS ON INTELLIGENT TRANSPORTATION SYSTEMS, 2024, 25 (01) : 532 - 544