Network Traffic Identification Based on Online Clustering

ZHANG Jian,QIAN Zong-jue,SHOU Guo-chu,HU Yi-hong
DOI: https://doi.org/10.3969/j.issn.1007-5321.2011.01.021
2011-01-01
Abstract:To solve the problem of network traffic identification online,a clustering algorithm and a traffic identification scheme is proposed.The scheme uses a few number of the initial data packets in the flows as a sub-flow,extracts the statistical features from sub-flows,and extracts the best feature subset of sub-flows by applying correlation-based filter approach.The network traffic flows are clustered by on-line density based spatial clustering of applications with noise algorithm,and mapped to application types by the dominant application in clusters.Experiments show that the scheme can identify new application types and encrypted flows,and can be implemented in online network traffic classification.
What problem does this paper attempt to address?