Deep Packet Inspection at Scale: Search Optimization Through Locality-Sensitive Hashing

深包检验 计算机科学 散列函数 网络数据包 可扩展性 地点 交通分类 数据挖掘 计算机网络 分布式计算 实时计算 数据库 计算机安全 语言学 哲学
作者
Maya Kapoor,Siddharth Krishnan,Thomas Moyer
标识
DOI:10.1109/nca57778.2022.10013504
摘要

Deep packet inspection is a primary tool for security specialists, surveillance analysts, and network engineers to lawfully intercept and analyze network traffic. In order to process this data or select streams of interest from the large amount of data flowing in today’s internet, solutions must be capable of identifying network traffic as quickly and accurately as possible. The ever-increasing diversity of data as well as sheer size has rendered the current regular expression matching and filtering solutions ineffective. We propose locality-sensitive hash embedding techniques Alpine and Palm for packet analysis. The fixed size of hashes as well as the adaptability of distance measures is proven to address the network traffic classification problem in our experiments and improves scalability over current state-of-the-art, automata-based search engines. In this paper, we analyze the system’s ability to classify network traffic by many data layer protocols and traffic types with over 99% accuracy. The model is also proven effective in areas where the regular expressions are inapplicable, such as traffic profiling. Finally, we provide real benchmarks of the system’s ability to scale to large signature and hash sets with much improved performance, demonstrating real-world applicability and generalizability of locality-sensitive hashing to deep packet inspection technology.
最长约 10秒,即可获得该文献文件

科研通智能强力驱动
Strongly Powered by AbleSci AI
更新
大幅提高文件上传限制,最高150M (2024-4-1)

科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
刚刚
Dr1完成签到,获得积分10
2秒前
6秒前
8秒前
niuxingyang完成签到 ,获得积分10
8秒前
11秒前
xsf发布了新的文献求助10
12秒前
坚强的夏瑶完成签到,获得积分10
17秒前
Jet发布了新的文献求助10
17秒前
18秒前
20秒前
wanci应助任性土豆采纳,获得10
24秒前
所所应助xsf采纳,获得10
24秒前
orixero应助hjjjxxxx采纳,获得10
25秒前
suhua发布了新的文献求助10
25秒前
阿嘎普莱特完成签到,获得积分10
29秒前
Hao应助欧阳香彤采纳,获得10
31秒前
度帕明发布了新的文献求助20
33秒前
33秒前
36秒前
47秒前
城市的板蓝根关注了科研通微信公众号
49秒前
十八冠六完成签到 ,获得积分10
49秒前
50秒前
52秒前
wall完成签到 ,获得积分10
52秒前
hjjjxxxx发布了新的文献求助10
53秒前
54秒前
55秒前
57秒前
ZJin发布了新的文献求助10
58秒前
1分钟前
1分钟前
1分钟前
1分钟前
lik发布了新的文献求助10
1分钟前
monster完成签到 ,获得积分10
1分钟前
yiyu应助梅花鹿采纳,获得10
1分钟前
1分钟前
Chondrite完成签到,获得积分10
1分钟前
高分求助中
【本贴是提醒信息,请勿应助】请在求助之前详细阅读求助说明!!!! 20000
One Man Talking: Selected Essays of Shao Xunmei, 1929–1939 1000
The Three Stars Each: The Astrolabes and Related Texts 900
Yuwu Song, Biographical Dictionary of the People's Republic of China 800
Multifunctional Agriculture, A New Paradigm for European Agriculture and Rural Development 600
Challenges, Strategies, and Resiliency in Disaster and Risk Management 500
Bernd Ziesemer - Maos deutscher Topagent: Wie China die Bundesrepublik eroberte 500
热门求助领域 (近24小时)
化学 材料科学 医学 生物 有机化学 工程类 生物化学 纳米技术 物理 内科学 计算机科学 化学工程 复合材料 遗传学 基因 物理化学 催化作用 电极 光电子学 量子力学
热门帖子
关注 科研通微信公众号,转发送积分 2481635
求助须知:如何正确求助?哪些是违规求助? 2144263
关于积分的说明 5469258
捐赠科研通 1866782
什么是DOI,文献DOI怎么找? 927804
版权声明 563039
科研通“疑难数据库(出版商)”最低求助积分说明 496402