Classification of hidden network streams

  • Authors:
  • Matthew Gebski;Alex Penev;Raymond K. Wong

  • Affiliations:
  • National ICT Australia, and School of Computer Science & Engineering, University of New South Wales, Sydney, Australia;National ICT Australia, and School of Computer Science & Engineering, University of New South Wales, Sydney, Australia;National ICT Australia, and School of Computer Science & Engineering, University of New South Wales, Sydney, Australia

  • Venue:
  • DaWaK'06 Proceedings of the 8th international conference on Data Warehousing and Knowledge Discovery
  • Year:
  • 2006

Quantified Score

Hi-index 0.00

Visualization

Abstract

Traffic analysis is an important issue for network monitoring and security. We focus on identifying protocols for network traffic by analysing the size, timing and direction of network packets. By using these network stream characteristics, we propose a technique for modelling the behaviour of various TCP protocols. This model can be used for recognising protocols even when running under encrypted tunnels. This is complemented with experimental evaluation on real world network data.