LENTA: Longitudinal Exploration for Network Traffic Analysis

被引:4
|
作者
Morichetta, Andrea [1 ]
Mellia, Marco [1 ]
机构
[1] Politecn Torino, Turin, Italy
关键词
D O I
10.1109/ITC30.2018.00035
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
In this work, we present LENTA (Longitudinal Exploration for Network Traffic Analysis), a system that supports the network analysts to easily identify traffic generated by services and applications running on the web, being them benign or possibly malicious. First, LENTA simplifies analysts' job by letting them observe few hundreds of clusters instead of the original hundred thousands of single URLs. Second, it implements a self-learning methodology, where a semi-supervised approach lets the system grow its knowledge, which is used in turn to automatically associate traffic to previously observed services and identify new traffic generated by possibly suspicious applications. This lets the analysts easily observe changes in the traffic, like the birth of new services, or unexpected activities. We follow a data driven approach, running LENTA on real data. Traffic is analyzed in hatches of 24-hour worth of traffic. We show that LENTA allows the analyst to easily understand which services are running on their network, highlights malicious traffic and changes over time, greatly simplifying the view and understanding of the traffic.
引用
收藏
页码:176 / 184
页数:9
相关论文
共 50 条
  • [21] Analysis and optimality on network traffic flows
    School of Computer Science and Information Engineering, Chongqing Technology and Business University, Chongqing,400067, China
    不详
    WRI World Congr. Comput. Sci. Inf. Eng., CSIE, 2009, (39-43):
  • [22] Comprehensive Analysis of Network Traffic Data
    Miao, Yuantian
    Ruan, Zichan
    Pan, Lei
    Zhang, Jun
    Xiang, Yang
    Wang, Yu
    2016 IEEE INTERNATIONAL CONFERENCE ON COMPUTER AND INFORMATION TECHNOLOGY (CIT), 2016, : 423 - 430
  • [23] Network Traffic Classification for Security Analysis
    Boger, Mark
    Liu, Tianyuan
    Ratliff, Jacqueline
    Nick, William
    Yuan, Xiaohong
    Esterline, Albert
    SOUTHEASTCON 2016, 2016,
  • [24] Analysis of nonuniform traffic in a switching network
    Mir, N
    7TH INTERNATIONAL CONFERENCE ON COMPUTER COMMUNICATIONS AND NETWORKS - PROCEEDINGS, 1998, : 668 - 672
  • [25] Network Traffic Analysis with Cloud Platform
    Lin, Richard Chun-Hung
    Liao, Hung-Jen
    Tung, Kuang-Yuan
    Lin, Ying-Chih
    Wu, Shih-Lin
    JOURNAL OF INTERNET TECHNOLOGY, 2012, 13 (06): : 953 - 961
  • [26] Network traffic analysis and modeling for games
    Park, H
    Kim, T
    Kim, S
    INTERNET AND NETWORK ECONOMICS, PROCEEDINGS, 2005, 3828 : 1056 - 1065
  • [27] Traffic Analysis of a University local Network
    Rios, Rene
    Fermin, Jose R.
    TELEMATIQUE, 2009, 8 (02): : 15 - 27
  • [28] Analysis of Air Traffic Network of China
    Wang, Hongyong
    Wen, Ruiying
    PROCEEDINGS OF THE 2012 24TH CHINESE CONTROL AND DECISION CONFERENCE (CCDC), 2012, : 2400 - 2403
  • [29] Network Traffic Analysis Based on Hadoop
    Yang, Jie
    He, Haiyang
    Qiao, Yuanyuan
    2014 4TH INTERNATIONAL CONFERENCE ON WIRELESS COMMUNICATIONS, VEHICULAR TECHNOLOGY, INFORMATION THEORY AND AEROSPACE & ELECTRONIC SYSTEMS (VITAE), 2014,
  • [30] A software tool for network traffic analysis
    Sun, F.
    Tzeng, H.
    SNPD 2006: SEVENTH ACIS INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING ARTIFICIAL INTELLIGENCE, NETWORKING, AND PARALLEL/DISTRIBUTED COMPUTING, PROCEEDINGS, 2006, : 190 - +