Journal on Communications ›› 2015, Vol. 36 ›› Issue (3): 161-169.doi: 10.11959/j.issn.1000-436x.2015070

• Academic paper • Previous Articles     Next Articles

Flow-awared identification model of sophisticated network application

Luo-shi ZHANG1,Da-wei WANG2,Yi-bo XUE3,4   

  1. 1 School of Computer Science and Technology, Harbin University of Science and Technology, Harbin 150080, China
    2 National Computer Network Emergency Response Technical Team/Coordination Center of China, Beijing 100029, China
    3 Research Institute of Information and Technology, Tsinghua University, Beijing 100084, China
    4 National Lab for Information Science and Technology, Tsinghua University Beijing 100084, China
  • Online:2015-03-25 Published:2017-06-21

Abstract:

Traditional methods of protocol identification, which is mainly based on individual flow, lose their effective-ness as dealing with sophisticated network applications. A novel model of identifying sophisticated network applications, called flow-aware model, is addressed. This proposed model abstracts the characteristics of sophisticated network appli-cations from spatial dimension, time dimension and flow dimension, and provides the detailed analysis and deeply mining in characteristics of behaviors and states. Based on this model, a framework and method of sophisticated network appli-cations identification is proposed. The experimental results demonstrate that the proposed method can achieve the pur-pose of identifying sophisticated network applications effectively.

Key words: protocol identification, behavior analysis, flow aware, sophisticated network application

No Suggested Reading articles found!