• DocumentCode
    124374
  • Title

    Characterizing Application Behaviors for classifying P2P traffic

  • Author

    Dawei Wang ; Luoshi Zhang ; Zhenlong Yuan ; Yibo Xue ; Yingfei Dong

  • Author_Institution
    Nat. Comput. Network Emergency Response Tech. Team / Coordination Center of China, Beijing, China
  • fYear
    2014
  • fDate
    3-6 Feb. 2014
  • Firstpage
    21
  • Lastpage
    25
  • Abstract
    Network traffic classification is critical to both network management and system security. However, existing traffic classification techniques become less effective as more P2P applications use proprietary protocols for delivery and encryption. Especially, current techniques usually focus on individual flows and do not consider all flows associated with an application together. To address this issue, this paper proposes a novel Application Behavior Characterization (ABC) technique. We design a novel application behavior feature extracting method and an effective classification algorithm, which explore the correlation of multiple flows of a specific application. We evaluate the proposed method with real network traffic. The experimental results show that it can correctly identify flows belonging to a set of known P2P applications (such as Skype, Thunder, and PPTV) with a probability over 90%. Moreover, it can further identify the particular application that a flow belongs to with a precision of 90% on average. More information about implementing and deploying ABC can be found in a technical report [10].
  • Keywords
    computer network security; cryptographic protocols; feature extraction; peer-to-peer computing; telecommunication network management; telecommunication traffic; ABC; PPTV; Skype; Thunder; application behavior characterization; classifying P2P traffic; encryption; feature extracting method; network management; network traffic classification; proprietary protocols; system security; Collaboration; Decision trees; Feature extraction; Protocols; Support vector machine classification; Training; Vectors; Application Behavior; Decision Tree; P2P application; Traffic Classification;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Computing, Networking and Communications (ICNC), 2014 International Conference on
  • Conference_Location
    Honolulu, HI
  • Type

    conf

  • DOI
    10.1109/ICCNC.2014.6785298
  • Filename
    6785298