清华大学自动化系智能与网络化系统研究中心,北京,100084
网络首发:2013-08-10,
纸质出版:2013
移动端阅览
李强 1, 秦涛 2, 管晓宏 1, 等. 对称性的起因:非业务性网络流量新特性的挖掘与探索[J]. 西安交通大学学报, 2013,47(8):19-25.
Cause of Symmetry for Traffic Volume: Mining and Exploring New Characteristics of Traffic in Non-Business Networks[J]. 2013, 47(8): 19-25.
李强 1, 秦涛 2, 管晓宏 1, 等. 对称性的起因:非业务性网络流量新特性的挖掘与探索[J]. 西安交通大学学报, 2013,47(8):19-25. DOI: 10.7652/xjtuxb201308004.
Cause of Symmetry for Traffic Volume: Mining and Exploring New Characteristics of Traffic in Non-Business Networks[J]. 2013, 47(8): 19-25. DOI: 10.7652/xjtuxb201308004.
针对当前非业务性网络前后向流量呈现对称性的问题
提出一种基于双向网络流模型的分析方法。与传统的单向网络流模型相比
双向网络流模型以主机为粒度实现流量双向聚合
利用网络流在协议、端口分布和流对称性方面的特征指标刻画主机间的交互行为
从而发现流量对称性产生的根源。基于西安交通大学校园网流量的实验结果表明
1%的主机承载了90%以上的前向UDP流量
是造成流量对称性的根本原因。相比于传统的网络流模型
文中提出的模型和分析方法能快速定位造成流量对称性的主机
更适用于非业务性网络流量的控制与管理。
Measurement methods based on bi-directional flow model are proposed to investigate the symmetric characteristic of the non-business network traffics. The features of protocol
port distribution and flow size are extracted from host-level aggregated traffic to characterize users' interactive behavior and to find the origins of traffic symmetry. The analysis results using actual traffic traces collected from the campus network of Xi'an Jiaotong University show that 1% of the total hosts bear more than 90% of the forward UDP traffic
which results in the symmetry of total traffic. Compared with the traditional flow model
the proposed methods can quickly locate the hosts that are responsible for traffic symmetry
and are more suitable for traffic control and management in non-business networks.
中国互联网络信息中心. 第29次中国互联网络发展状况统计报告 [R/OL]. [2012-07-15]. http:∥www.cnnic.net.cn/dtygg/dtgg/201201/t20120116_23667.html.
SILVERSTON T, FOURMAUX O, BOTTA A, et al. Traffic analysis of peer-to-peer IPTV communities [J]. Computer Networks, 2009, 53(4): 470-484.
ZHANG Min, JOHN W, CHEN Changjia. Architecture and download behavior of Xunlei: a measurement-based study [C]∥Proceedings of International Conference on Education Technology and Computer. Piscataway, NJ, USA: IEEE, 2010: 494-498.
张艺濒, 张志斌, 赵咏, 等. TCP与UDP网络流量对比分析研究 [J]. 计算机应用研究, 2010(6): 2192-2197.
ZHANG Yi-bin, ZHANG Zhi-bin, ZHAO Yong, et al. Comparative analysis on TCP and UDP network traffic [J]. Application Research of Computers, 2010(6): 2192-2197.
ZHANG Min, DUSI M, JOHN W, et al. Analysis of UDP traffic usage on Internet backbone links [C]∥ Proceedings of the 2009 Ninth Annual International Symposium on Applications and the Internet. Piscataway, NJ, USA: IEEE, 2009: 280-281.
张敏, 陈常嘉. 基于测量的UDP流特性分析 [J]. 北京交通大学学报, 2010, 34(5): 131-134.
ZHANG Min, CHEN Changjia. Measurement-based characterization of UDP flowing [J]. Journal of Beijing Jiaotong University, 2010, 34(5): 131-134.
JOHN W, TAFVELIN S. Differences between in-and outbound Internet backbone traffic [C/OL]∥Proceedings of TERENA Networking Conference 2007. [2008-11-19]. http:∥tnc2007.terena.org/programme /presentations/show4fa2.html.
SHANNON C, ABEN E, CLAFFY K, et al. The CAIDA anonymized 2008 Internet traces [EB/OL].(2008-05-15)[2011-09-08]. http:∥www.caida.org/data/passive/passive_2008_dataset.xml.
CLAFFY K, ANDERSEN D, HICK P. The CAIDA anonymized 2011 Internet traces [EB/OL].(2011-04-13)[2011-06-12]. http:∥www.caida.org/data/passive/passive_2011_dataset.xml.
Cisco Corp. NetFlow services solutions guide [EB/OL]. [2011-12-01]. http:∥www.cisco.com/en/US/docs/ios/soluti ons_docs/netflow/nfwhite.html.
KARAGIANNIS T, BROIDO A, FALOUTSOS M, et al. Transport layer identification of P2P traffic [C]∥Proceedings of the 4th ACM SIGCOMM Conference on Internet Measurement. New York, USA: ACM, 2004: 121-134.
汪志伟,曹建福,郑辑光.一种面向分簇无线传感器网络的多信道跨层协议. 2013, 47(6): 61-67. [doi:10.7652/xjtuxb 201306011]
脱立恒,倪宏,刘学.一种网络冗余流量消除算法. 2013, 47(4): 22-27. [doi:10.7652/xjtuxb201304005]
夏秦,王志文,卢柯.入侵检测系统利用信息熵检测网络攻击的方法. 2013, 47(2): 14-19. [doi:10.7652/xjtuxb201302 003]
温彦,刘晨,韩燕波.一种用户主导的跨组织数据按需集成方法. 2013, 47(2): 116-123. [doi:10.7652/xjtuxb201302020]
张赛,徐恪,李海涛.微博类社交网络中信息传播的测量与分析. 2013, 47(2): 124-130. [doi:10.7652/xjtuxb201302021]
陈国强,王宇平.采用离散粒子群算法的复杂网络重叠社团检测. 2013, 47(1): 107-113. [doi:10.7652/xjtuxb201301 021]
田丰,桂小林,杨攀,等.采用类别相似度聚合的关联文本分类方法. 2012, 46(12): 6-11. [doi:10.7652/xjtuxb201212 002]
伍文,孟相如,马志强,等.模块化动态博弈的网络可生存性态势跟踪方法. 2012, 46(12): 18-23. [doi:10.7652/xjtuxb 201212004]
翟治年,奚建清,卢亚辉,等.任务状态敏感的访问控制模型及其有色网仿真.2012, 46(12): 85-91.[doi:10.7652/xjtuxb201212015]
邵必林,边根庆,张维琪,等.采用k-均值聚类算法的资源搜索模型研究. 2012, 46(10): 55-59. [doi:10.7652/xjtuxb 201210010]
杜文超,陈庶樵,胡宇翔.面向网络流的自适应正则表达式分组匹配算法. 2012, 46(8): 49-53. [doi:10.7652/xjtuxb 201208009]
杨柳静,秦涛,王晨旭.应用交互式网络流模型的高速网络异常行为检测与控制. 2012, 46(6): 58-65. [doi:10.7652/xjtuxb201206011]
丁要军,蔡皖东. 采用两阶段策略模型(KTSVM)的P2P流量识别方法. 2012, 46(2): 45-50. [doi:10.7652/xjtuxb 201202008]
侯重远,江汉红,芮万智,等. 工业网络流量异常检测的概率主成分分析法. 2012, 46(2): 70-75. [doi:10.7652/xjtuxb 201202012]
褚伟波,蔡忠闽,管晓宏,等. 采用子网流量组合优化的网络流量分割方法. 2011, 45(12): 22-27. [doi:10.7652/xjtuxb 201112005]
0
浏览量
4
下载量
0
CSCD
关联资源
相关文章
相关作者
相关机构
京公网安备11010802024621