DocumentCode
690472
Title
Multiple vector classification for P2P traffic identification
Author
Salcedo-Campos, F.J. ; Diaz-Verdejo, J.E. ; Garcia-Teodoro, Pedro
Author_Institution
CITIC, Dpt. of Signal Theory, Telematics and Communications, University of Granada, Granada, Spain
fYear
2011
fDate
18-21 July 2011
Firstpage
1
Lastpage
9
Abstract
The identification of P2P traffic has become a principal concern for the research community in the last years. Although several P2P traffic identification proposals can be found in the specialized literature, the problem still persists mainly due to obfuscation and privacy matters. This paper presents a flow-based P2P traffic identification scheme which is based on a multiple classification procedure. First, every traffic flow monitored is parameterized by using three different groups of features: time related features, data transfer features and signalling features. After that, a flow identification process is performed for each group of features. Finally, a global identification procedure is carried out by combining the three individual classifications. Promising experimental results have been obtained by using a basic KNN scheme as the classifier. These results provide some insights on the relevance of the group of features considered and demonstrate the validity of our approach to identify P2P traffic in a reliable way, while content inspection is avoided.
Keywords
Databases; IP networks; Inspection; Payloads; Protocols; Support vector machine classification; Vectors; Feature extraction; Flow parameterization; Multiple vector classification; P2P identification;
fLanguage
English
Publisher
ieee
Conference_Titel
Data Communication Networking (DCNET), 2011 Proceedings of the International Conference on
Conference_Location
Seville, Spain
Type
conf
Filename
6835770
Link To Document