期刊文献+

一种面向未知链路帧的格式特征提取与分类算法 被引量:1

A format feature extracting and classifying algorithm for unknown data link frame
下载PDF
导出
摘要 随着通信网络的发展,私有协议被广泛应用。缺乏必要先验知识时,现有面向已知协议的解析工具无法获取私有协议数据承载的信息。获取私有协议数据承载的信息的前提是正确实现协议格式特征提取与数据分类。基于协议格式一般规律,提出一种针对私有链路协议的未知帧格式特征逆向提取与分类算法。通过链路帧预编码、固定域挖掘从帧样本集合提取帧格式特征并计算特征向量,最后基于特征向量加权欧氏距离对链路帧分类。测试结果表明,该算法能够有效提取帧格式特征,正确实现链路帧的提取和分类。 With the rapid development of communication network, private protocol is widely adopted. Without necessary prior knowledge,the existing analyzing tools for the open protocols cannot be used for obtaining the information from the private protocol data. To get the information from the private protocol data,one has to extract the protocol format feature and classify the protocol data correctly. Based on the general rules of protocol format,a format feature reverse extracting and data classifying algorithm was proposed for unknown data link frame. By data link frame precoding and fixed-field mining,the frame format features can be extracted from the frame sample set and the feature vectors can be calculated. Finally,the data link frames are classified based on the weighted Euclidean distances between the feature vectors. The test results show that the proposed method can be used to extract the protocol format features effectively and to correctly classify the data link frames by using format features.
作者 薛开平 柳彬 李威 洪佩琳 XUE Kaiping;LIU Bin;LI Wei;HONG Peilin(Department of Electronic Engineering and Information Science, University of Science and Technology of China, Hefei 230026, Chin)
出处 《中国科学院大学学报(中英文)》 CSCD 北大核心 2018年第4期521-528,共8页 Journal of University of Chinese Academy of Sciences
基金 国家自然科学基金(61379129) 中国科学院青年创新促进会人才基金(2016394)资助
关键词 私有协议 未知链路帧 格式特征 分类 private protocol unknown data link frame format feature classification
  • 相关文献

参考文献8

二级参考文献145

  • 1赵咏,姚秋林,张志斌,郭莉,方滨兴.TPCAD:一种文本类多协议特征自动发现方法[J].通信学报,2009,30(S1):28-35. 被引量:10
  • 2刘立芳,霍红卫,王宝树.PHGA-COFFEE:多序列比对问题的并行混合遗传算法求解[J].计算机学报,2006,29(5):727-733. 被引量:11
  • 3陈亮,龚俭,徐选.基于特征串的应用层协议识别[J].计算机工程与应用,2006,42(24):16-19. 被引量:43
  • 4中国互联网络信息中心.第22次中国互联网络发展状况统计报告[R].北京,2008.07.
  • 5Real Networks, Real Media Technology, http://www. realnetworks.com/
  • 6Microsoft, WMT, http://www.microsoft.com/windows/ windowsmedia/default .asp.
  • 7M H Willebeek-LeMair, K G Kumar, and E C Snible. Bamba: audio and video streaming over the internet. IBM Journal of Research and Development, 1998, 42(2).269-280.
  • 8Sen S, Spatscheck O, and Wang D M. Accurate. scalable in-network identification of P2P traffic using application signatures[C]. Proceedings of the 13th international conference on World Wide Web, New York, NY, United States, 2004: 512-521.
  • 9Kim Myung-Sup, Won Young J, and Hong Won-Ki. Application-level traffic monitoring and an analysis on IP networks[J]. ETRI Journal, 2005, 27(1): 1-22.
  • 10Sun Q D, Li S L, and Guo X J. Quick Finding of Network Video Stream. 2008. International Conference on Computer Science and Information Technology. 2008. 9: 353-356.

共引文献106

同被引文献14

引证文献1

二级引证文献1

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部