Telecommunications Science ›› 2014, Vol. 30 ›› Issue (1): 31-38.doi: 10.3969/j.issn.1000-0801.2014.01.005

• Research and development • Previous Articles     Next Articles

An Efficient Distributed Forensic System Based on Hadoop:Principle and Method

Songyang Wu1,Xizhe Zhang1,Xupeng Wang1,Xiangxue Li2   

  1. 1 The Third Research Institute of Ministry of Public Security, Shanghai 201204, China
    2 East China Normal University, Shanghai 200241, China
  • Online:2014-01-20 Published:2017-06-22

Abstract:

With the development and popularization of information technology and intelligence device, the diversity of different device making forensic analysis of existing equipment cannot meet today's networking and storage technology requirements, and exhibit complex operation, low efficiency, on high speed disk image storage and massive data correlation. An efficient distributed forensics system based on Hadoop technique, which can support multiple concurrent media scene forensics work, was designed and implemented, and through the dispatch control services would be evidence of different data storage media to a different distributed data storage server, each forensic task runtime could monopolize a forensic medium to achieve a parallel multiple media forensic analysis. Data show that responsible acknowledge duration will be 0.1 s for a 2~4 GB text file.

Key words: Hadoop, distributed system, forensic, massive data, multiple media

No Suggested Reading articles found!