Chinese Journal of Network and Information Security ›› 2019, Vol. 5 ›› Issue (4): 91-98.doi: 10.11959/j.issn.2096-109x.2019041

• Papers • Previous Articles     Next Articles

Improved method of Tor network flow watermarks based on IPD interval

Jie DU(),Yongzhong HE,Ye DU   

  1. School of Computer and Information Technology,Beijing Jiaotong University,Beijing 100044,China
  • Online:2019-08-15 Published:2019-08-20


Tor is an anonymous network mechanism that provides services for hiding traffic sources,but it has the problem that the entry traffic flows of Tor are clearly identifiable.Bridge protocols such as obfs4 come into being to solve this problem,which brings new challenges that have not yet been overcome.An IPD interval scheme is proposed,which uses the clustering characteristics of k-means to improve the original scheme,so that the added flow watermark can be detected efficiently in the three modes of obfs4 bridges.The results of experiments show that the improved algorithm has higher detection rate and recognition rate,and has good adaptability to variable netflow traffic,which is conducive to the construction of a nice secure network environment.

Key words: active traffic analysis, network flow watermarks, anonymous communication, Tor

CLC Number: 

No Suggested Reading articles found!