DocumentCode :
690472
Title :
Multiple vector classification for P2P traffic identification
Author :
Salcedo-Campos, F.J. ; Diaz-Verdejo, J.E. ; Garcia-Teodoro, Pedro
Author_Institution :
CITIC, Dpt. of Signal Theory, Telematics and Communications, University of Granada, Granada, Spain
fYear :
2011
fDate :
18-21 July 2011
Firstpage :
1
Lastpage :
9
Abstract :
The identification of P2P traffic has become a principal concern for the research community in the last years. Although several P2P traffic identification proposals can be found in the specialized literature, the problem still persists mainly due to obfuscation and privacy matters. This paper presents a flow-based P2P traffic identification scheme which is based on a multiple classification procedure. First, every traffic flow monitored is parameterized by using three different groups of features: time related features, data transfer features and signalling features. After that, a flow identification process is performed for each group of features. Finally, a global identification procedure is carried out by combining the three individual classifications. Promising experimental results have been obtained by using a basic KNN scheme as the classifier. These results provide some insights on the relevance of the group of features considered and demonstrate the validity of our approach to identify P2P traffic in a reliable way, while content inspection is avoided.
Keywords :
Databases; IP networks; Inspection; Payloads; Protocols; Support vector machine classification; Vectors; Feature extraction; Flow parameterization; Multiple vector classification; P2P identification;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Data Communication Networking (DCNET), 2011 Proceedings of the International Conference on
Conference_Location :
Seville, Spain
Type :
conf
Filename :
6835770
Link To Document :
بازگشت