期刊文献+

基于数据流多维特征的移动流量识别方法研究 被引量:12

Research on mobile traffic identification based on multidimensional characteristics of data flow
下载PDF
导出
摘要 随着移动互联网的快速发展,移动设备的数量激增至历史新高.从大量混杂流量中识别出移动流量并对流量进行分析,是深入研究移动互联网特性的第一步,同时可以为移动网络测量与管理、移动安全和隐私保护提供有价值的信息.本文综合整理了网络流量识别的常见方法,提出了基于数据流多维统计特征的移动流量识别方法.该方法从硬件特征、操作系统指纹和用户使用习惯三个方面提取了数据流中具有代表性的特征并对特征进行分析,使用集成学习的方法生成识别模型.移动流量的识别准确率和主流的5种操作系统流量分类的准确率都达到了99%以上.本文方法比UAFs方法准确率提高了8%左右.本方法提取的特征具有多维性并且具有实际意义,整合了网络层和传输层的数据流特征,相较于使用深度数据包检测的方法,基于数据流多维特征的方法同样适用于加密流量的分类. With the rapid development of mobile Internet,the number of mobile devices has surged to a record high.Recognizing and analyzing mobile traffic from a large number of mixed traffic is the first step to study the characteristics of mobile Internet.It can also provide valuable information for mobile network measurement and management,mobile security and privacy protection.This paper summarizes the common methods of network traffic identification,and proposes a mobile traffic identification method based on multidimensional statistical characteristics of data flow.This method extracts the representative features of data stream from three aspects:hardware features,operating system fingerprints and user usage habits,and analyses the features.An ensemble learning method is used to generate the recognition model.The accuracy of mobile traffic identification and five mainstream operation classification results are more than 99%.Compared with the UAFs method mentioned in this paper,the accuracy is improved by about 8%.The features extracted by this method are multidimensional and have practical significance.The features integrate the data flow characteristics network layer and transport layer.Compared with the method using deep packet inspection detection,this method is suitable for the classification of encrypted traffic.
作者 武思齐 王俊峰 WU Si-Qi;WANG Jun-Feng(College of Computer Science, Sichuan University, Chengdu 610065, China;School of Aeronautics and Astronautics, Sichuan University, Chengdu 610065, China)
出处 《四川大学学报(自然科学版)》 CAS CSCD 北大核心 2020年第2期247-254,共8页 Journal of Sichuan University(Natural Science Edition)
基金 国家重点研发计划项目(2018YFB0804503) 装备预研教育部联合基金(6141A02011607,6141A020223) 四川省重点研发计划项目(18ZDYF3867,2017GZDZX0002)
关键词 数据流 移动流量识别 操作系统分类 机器学习 集成学习 Data flow Mobile traffic identification Operating system classification Machine learning Ensemble learning
  • 相关文献

参考文献8

二级参考文献42

  • 1MOORE A W, PAPAGIANNAKI K. Toward the accurate identification of network applications [ C]//PAM 2005: Proceedings of the 6th International Workshop on Passive and Active Network Measurement. Berlin: Springer-Verlag, 2005:41-54.
  • 2CHOI K, CHOI K J. Pattern matching of packet payload for network traffic classification [C]// COIN-NGNCON 2006: The Joint Interna- tional Confi~rence on Optical lnternet and Next Generation Network. Washington, DC: IEEE, 2006:130-132.
  • 3ZANDER S, NGUYEN T, ARMITAGE G. Automated traffic classification and application identification using machine learning [ C]// LCN 2005: Proceedings of the IEEE Conference on Local Computer Networks 30th Anniversary. Washington, DC: IEEE Computer Society, 2005:250 - 257.
  • 4ROUGHAN M, SEN S, SPATSCHECK O, et al. Class-of-service mapping for QoS: A statistical signature-based approach to IP traffic classification [ C]//IMC'04: Proceedings of the ACM SIGCOMM Internet Measurement Conference. New York: ACM, 2004:135 - 148.
  • 5MOORE A W, ZUEV D. Internet traffic classification using Bayesian analysis techniques [ C]// Proceedings of the 2005 ACM SIGMET- RICS International Conference on Measurement and Modeling of Computer Systems. New York: ACM Press, 2005:50 -60.
  • 6TEUFL P, PAYER U, AMLING M, et al. InFeCT--Network traffic classification [ C]// Proceedings of the seventh International Conference on Networking. Washington, DC: IEEE Computer Society, 2008: 439 - 444.
  • 7KIZILOREN T, GERMEN E. Network traffic classification with self organizing maps [ C]//ISCIS 2007: Proceedings of 22nd International Symposium on Computer and Information Sciences. Washington, DC: IEEE, 2007:1 -5.
  • 8KOHONEN T. The self-organizing maps [ J]. Proceedings of the IEEE, 1990, 78(9) : 1464 - 148.
  • 9MOORE A W, ZUEV D. Internet traffic classification using Bayesian analysis techniques [ C]// Proceedings of the 2005 ACM SIGMET- RICS International Conference on Measurement and Modeling of Computer Systems. New York: ACM, 2005:50-60.
  • 10MOORE A W, ZUEV D, CROGAN M L. Discriminators for use in flow-based classification, RR-05-13 [ R/OL]. 12009 - 12 - 08]. http://citeseerx, ist. psu. edu/viewdoc/download? doi = 10.- 1. 1. 101. 7450&rep = repl &type = pdf.

共引文献99

同被引文献109

引证文献12

二级引证文献11

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部