• ورود به سامانه
      مشاهده مورد 
      •   صفحهٔ اصلی
      • نشریات انگلیسی
      • Journal of Computing and Security
      • Volume 3, Issue 2
      • مشاهده مورد
      •   صفحهٔ اصلی
      • نشریات انگلیسی
      • Journal of Computing and Security
      • Volume 3, Issue 2
      • مشاهده مورد
      JavaScript is disabled for your browser. Some features of this site may not work without it.

      A Hybrid Method based on Statistical Features and Packet Content Analysis to Identify Major Network Tunneling Protocols

      (ندگان)پدیدآور
      Kazemi, KeihanFanian, Ali
      Thumbnail
      دریافت مدرک مشاهده
      FullText
      اندازه فایل: 
      1.046 مگابایت
      نوع فايل (MIME): 
      PDF
      نوع مدرک
      Text
      زبان مدرک
      English
      نمایش کامل رکورد
      چکیده
      Network traffic identification is an essential component for effective network analysis and management. Signature-based and machine learning techniques are the two most important methods in network traffic analysis. Due to the strengths and weaknesses of these two approaches, their combination can strengthen them and remove the weaknesses of each in detection process. In this article, a hybrid method is introduced, to identify major network tunneling protocols. This method can detect the well-known tunneling protocols by combining signature-based methods and statistical analysis techniques through a clustering algorithm. In this proposed method, the clustering process is refined by the feedback of signature-base method. Since, in semi-supervised clustering, it is important to gain most informative data to improve the clustering performance, in the proposed clustering method, a new active learning approach is introduced for selecting informative constraints. In this hybrid method, four tunneling protocols (L2TP, PPTP, IPsec and OpenVPN) are applied. The obtained results indicate that this proposed hybrid method significantly increases accuracy and cluster purity, and these protocols are identified with high accuracy and low processing cost.
      کلید واژگان
      Traffic Detection
      Tunneling Protocols
      Packet Payload Analysis
      Semi-Supervised Clustering
      Active Learning

      شماره نشریه
      2
      تاریخ نشر
      2016-04-01
      1395-01-13
      ناشر
      University of Isfahan & Iranian Society of Cryptology
      سازمان پدید آورنده
      PhD Candidate
      Professor Assistance in isfahan university of thenology

      شاپا
      2322-4460
      2383-0417
      URI
      http://jcomsec.ui.ac.ir/article_22189.html
      https://iranjournals.nlai.ir/handle/123456789/283115

      مرور

      همه جای سامانهپایگاه‌ها و مجموعه‌ها بر اساس تاریخ انتشارپدیدآورانعناوینموضوع‌‌هااین مجموعه بر اساس تاریخ انتشارپدیدآورانعناوینموضوع‌‌ها

      حساب من

      ورود به سامانهثبت نام

      تازه ترین ها

      تازه ترین مدارک
      © کليه حقوق اين سامانه برای سازمان اسناد و کتابخانه ملی ایران محفوظ است
      تماس با ما | ارسال بازخورد
      قدرت یافته توسطسیناوب