Detailed Information

Cited 0 time in webofscience Cited 0 time in scopus
Metadata Downloads

Traffic Identification Based on Applications using Statistical Signature Free from Abnormal TCP Behavior

Full metadata record
DC Field Value Language
dc.contributor.authorAn, Hyun-Min-
dc.contributor.authorLee, Su-Kang-
dc.contributor.authorHam, Jae-Hyun-
dc.contributor.authorKim, Myung-Sup-
dc.date.accessioned2021-09-04T13:09:12Z-
dc.date.available2021-09-04T13:09:12Z-
dc.date.created2021-06-18-
dc.date.issued2015-09-
dc.identifier.issn1016-2364-
dc.identifier.urihttps://scholar.korea.ac.kr/handle/2021.sw.korea/92643-
dc.description.abstractAs network traffic becomes more complex and diverse from the existence of new applications and services, application-based traffic classification is becoming important for the effective use of network resources. To remedy the drawbacks of traditional methods, such as port-based or payload-based traffic classification, traffic classification methods based on the statistical information of a flow have recently been proposed. However, abnormal TCP behaviors, such as a packet retransmission or out-of-order packets, cause inconsistencies in the statistical information of a flow. Furthermore, the analysis results cannot be trusted without resolving the abnormal behaviors. In this paper, we analyze the limitations of traffic classification caused by abnormal TCP behavior, and propose a novel application-based traffic classification method using a statistical signature with resolving abnormal TCP behaviors. The proposed method resolves abnormal TCP behaviors and generates unique signatures for each application using the packet order, direction, and payload size of the first N packets in a flow, and uses them to classify the application traffic. The evaluation shows that this method can classify application traffic easily and quickly with high accuracy rates of over 99%. Furthermore, the method can classify traffic generated by applications that use the same application protocol or are encrypted.-
dc.languageEnglish-
dc.language.isoen-
dc.publisherINST INFORMATION SCIENCE-
dc.subjectPACKET SIZE-
dc.subjectCLASSIFICATION-
dc.titleTraffic Identification Based on Applications using Statistical Signature Free from Abnormal TCP Behavior-
dc.typeArticle-
dc.contributor.affiliatedAuthorKim, Myung-Sup-
dc.identifier.scopusid2-s2.0-84940056866-
dc.identifier.wosid000362464100011-
dc.identifier.bibliographicCitationJOURNAL OF INFORMATION SCIENCE AND ENGINEERING, v.31, no.5, pp.1669 - 1692-
dc.relation.isPartOfJOURNAL OF INFORMATION SCIENCE AND ENGINEERING-
dc.citation.titleJOURNAL OF INFORMATION SCIENCE AND ENGINEERING-
dc.citation.volume31-
dc.citation.number5-
dc.citation.startPage1669-
dc.citation.endPage1692-
dc.type.rimsART-
dc.type.docTypeArticle-
dc.description.journalClass1-
dc.description.journalRegisteredClassscie-
dc.description.journalRegisteredClassscopus-
dc.relation.journalResearchAreaComputer Science-
dc.relation.journalWebOfScienceCategoryComputer Science, Information Systems-
dc.subject.keywordPlusPACKET SIZE-
dc.subject.keywordPlusCLASSIFICATION-
dc.subject.keywordAuthorapplication-level traffic classification-
dc.subject.keywordAuthorapplication identification-
dc.subject.keywordAuthorstatistical signature-
dc.subject.keywordAuthorsignature-based classification-
dc.subject.keywordAuthorstatistics-based classification-
Files in This Item
There are no files associated with this item.
Appears in
Collections
Graduate School > Department of Computer and Information Science > 1. Journal Articles

qrcode

Items in ScholarWorks are protected by copyright, with all rights reserved, unless otherwise indicated.

Related Researcher

Researcher KIM, MYUNG SUP photo

KIM, MYUNG SUP
컴퓨터정보학과
Read more

Altmetrics

Total Views & Downloads

BROWSE