Abstract:Two novel methods based on hosts’ behavior analysis are proposed for encrypted packet-based Internet traffic classification. Combined with traffic matrix and network structure entropy, some new exponents for in-degree and out-degree are introduced to illustrate the characterization of connection and message transmission among the network nodes. These exponents can be used to describe traffic feature in different periods and time scale. Visibility graph is also used to convert traffic sequence to network. And the features for network structure are utilized to analyze the host behavior in the traffic sequence. The experimental results demonstrate that the variable trend of entropy exponents and network structure for different traffic have great difference. And two proposed methods can achieve effective traffic classification.
叶春明, 王珍, 陈思, 单洪. 基于节点行为特征分析的网络流量分类方法[J]. 电子与信息学报, 2014, 36(9): 2158-2165.
Ye Chun-Ming, Wang Zhen, Chen Si, Dan Hong. Internet Traffic Classification Based on Hosts Behavior Analysis. , 2014, 36(9): 2158-2165.