Hadoop based Deep Packet Inspection system for traffic analysis of e-business websites

Author(s):  
Jiangtao Luo ◽  
Yan Liang ◽  
Wei Gao ◽  
Junchao Yang
2021 ◽  
Vol 7 (1) ◽  
pp. 132-140
Author(s):  
V. Fitsov

Deep packet inspection systems on communication networks are used to identify the application generating a specific traffic flow. The issues related to modeling and design of deep packet inspection systems remain poorly understood. In this paper, a software technique for evaluating the effectiveness of the hardware composition of the servers of the deep packet inspection system is presented, using a mathematical model of such a system and software search methods. The description of the program search by the maximum element method and the Hook - Jeeves method is given. A modernization of the Hook-Jeeves method for a monotonically decreasing function is proposed. Comparison of the methods by the number of search steps is performed.


Sensors ◽  
2020 ◽  
Vol 20 (6) ◽  
pp. 1637 ◽  
Author(s):  
Wenguang Song ◽  
Mykola Beshley ◽  
Krzysztof Przystupa ◽  
Halyna Beshley ◽  
Orest Kochan ◽  
...  

In this paper, to solve the problem of detecting network anomalies, a method of forming a set of informative features formalizing the normal and anomalous behavior of the system on the basis of evaluating the Hurst (H) parameter of the network traffic has been proposed. Criteria to detect and prevent various types of network anomalies using the Three Sigma Rule and Hurst parameter have been defined. A rescaled range (RS) method to evaluate the Hurst parameter has been chosen. The practical value of the proposed method is conditioned by a set of the following factors: low time spent on calculations, short time required for monitoring, the possibility of self-training, as well as the possibility of observing a wide range of traffic types. For new DPI (Deep Packet Inspection) system implementation, algorithms for analyzing and captured traffic with protocol detection and determining statistical load parameters have been developed. In addition, algorithms that are responsible for flow regulation to ensure the QoS (Quality of Services) based on the conducted static analysis of flows and the proposed method of detection of anomalies using the parameter Hurst have been developed. We compared the proposed software DPI system with the existing SolarWinds Deep Packet Inspection for the possibility of network traffic anomaly detection and prevention. The created software components of the proposed DPI system increase the efficiency of using standard intrusion detection and prevention systems by identifying and taking into account new non-standard factors and dependencies. The use of the developed system in the IoT communication infrastructure will increase the level of information security and significantly reduce the risks of its loss.


IET Networks ◽  
2012 ◽  
Vol 1 (1) ◽  
pp. 2-9 ◽  
Author(s):  
M.-Y. Liao ◽  
C.-S. Yang ◽  
M.-Y. Luo ◽  
P.-C. Wu ◽  
C.-H. Chen ◽  
...  

2010 ◽  
Vol 19 (1) ◽  
pp. 7-31 ◽  
Author(s):  
Niccolò Cascarano ◽  
Luigi Ciminiera ◽  
Fulvio Risso

2009 ◽  
Vol 20 (8) ◽  
pp. 2214-2226 ◽  
Author(s):  
Qian XU ◽  
Yue-Peng E ◽  
Jing-Guo GE ◽  
Hua-Lin QIAN

Sign in / Sign up

Export Citation Format

Share Document