Netflow Based P2P Detection in UDP Traffic

Qianli Zhang,Yunlong Ma,Pei Zhang,Jilong Wang,Xing Li
DOI: https://doi.org/10.1109/icicip.2014.7010349
2014-01-01
Abstract:Though it is commonly assumed that Internet traffic is dominated by TCP, there has been an increasing demand for UDP based P2P applications. UDP is widely used in new P2P networks because it can provides better support for NAT traversal. Since many of these applications use private protocols, UDP traffic is often hard to analyze, especially if the available data is only netflow records. In this paper, a component based method is proposed to analyze UDP traffic. Since flows in each component share the same application, P2P traffic can be identified without packet level information.
What problem does this paper attempt to address?