Network Traffic Signature Generation Mechanism Using Principal Component Analysis
The Deep Packet Inspection (DPI) method is a popular method that can accu- rately identify the flow data and its correspo- nding application. Currently, the DPI method is widely used in common network management systems. However, the major limitation of DPI systems is that their signature library is...
Gespeichert in:
Veröffentlicht in: | China communications 2013-11, Vol.10 (11), p.95-106 |
---|---|
Hauptverfasser: | , , , |
Format: | Artikel |
Sprache: | eng |
Schlagworte: | |
Online-Zugang: | Volltext bestellen |
Tags: |
Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
|
Zusammenfassung: | The Deep Packet Inspection (DPI) method is a popular method that can accu- rately identify the flow data and its correspo- nding application. Currently, the DPI method is widely used in common network management systems. However, the major limitation of DPI systems is that their signature library is mainly extracted manually, which makes it hard to efficiently obtain the signature of new appli- cations. Hence, in this paper, we propose an automatic signature extraction mechanism us- ing Principal Component Analysis (PCA) tech- nology, which is able to extract the signature automatically. In the proposed method, the signatures are expressed in the form of serial consistent sequences constructed by principal components instead of normally separated sub- strings in the original data extracted from the traditional methods. Extensive experiments ba- sed on numerous sets of data have been carried out to evaluate the performance of the proposed scheme, and the results prove that the newly proposed method can achieve good perfor- mance in terms of accuracy and efficiency. |
---|---|
ISSN: | 1673-5447 |
DOI: | 10.1109/CC.2013.6674214 |