期刊文献+

基于字符距离聚类的未知工控协议分类方法

Character distance clustering-based classification algorithm forunknown industrial control protocols
下载PDF
导出
摘要 未知工控协议分类是实现多类型混合工控协议识别的前提。利用工控协议报文格式精简且广泛采用二进制序列的特点,提出基于字符距离聚类的未知工控协议分类方法。该方法打破传统方法计算文本协议报文的欧氏距离而难以准确反映工控协议报文相似性的问题,通过构建二进制特征序列,计算字符距离,并开展基于字符距离K-means聚类,实现了未知工控协议分类。其中,为确保分类的准确性,提出基于最大平均字符距离的最佳聚类K值确定方法。半物理仿真结果表明,所提方法对未知工控协议分类的准确率可达96.80%,协议类型判别的正确率可达97.07%。 The classification of unknown industrial control protocol is the premise of realizing multi-type mixed industrial control protocol identification.Based on the brief and simple format of industrial control protocol messages with binary characters,this paper proposed an unknown industrial control protocol classification method based on character distance clustering.Pre-vious classification algorithms mainly calculated the Euclidean distance of text protocols,which couldn’t accurately reflect the similarity of unknown industrial control protocol messages.In contrast,the proposed algorithm realized unknown industrial control protocol classification by constructing the sequence of binary features sequences,calculating their character distances and performing K-means clustering.To guarantee the classification accuracy,it proposed an algorithm determining the optimal clustering K value based on the maximum average character distance.Semi-physical simulation results show that the protocol classification accuracy for unknown industrial control protocol classification can reach 96.80%,while the protocol type identification accuracy can reach 97.07%.
作者 屠雅春 许驰 杜昕宜 王倚天 夏长清 金曦 Tu Yachun;Xu Chi;Du Xinyi;Wang Yitian;Xia Changqing;Jin Xi(College of Information Engineering,Shenyang University of Chemical Technology,Shenyang 110142,China;Key Laboratory of Networked Control Systems,Chinese Academy of Sciences,Shenyang 110016,China;Shenyang Institute of Automation,Chinese Academy of Sciences,Shenyang 110169,China;Institutes for Robotics&Intelligent Manufacturing,Chinese Academy of Sciences,Shenyang 110169,China;School of Electronic&Information Engineering,Liaoning Technical University,Huludao Liaoning 125105,China)
出处 《计算机应用研究》 CSCD 北大核心 2023年第12期3696-3700,3705,共6页 Application Research of Computers
基金 国家自然科学基金资助项目(92267108,62173322,61972389,62133014) 辽宁省科学计划资助项目(2023JH3/1020004,2023JH3/10200006,2022JH25/10100005) 中国科学院青年创新促进会资助项目(2019202,2020207,Y2021062)。
关键词 工控协议 协议分类 字符距离 K-MEANS聚类 industrial control protocol protocol classification character distance K-means clustering
  • 相关文献

参考文献11

二级参考文献42

共引文献54

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部