English  |  正體中文  |  简体中文  |  Items with full text/Total items : 57969/91503 (63%)
Visitors : 13693673      Online Users : 57
RC Version 7.0 © Powered By DSPACE, MIT. Enhanced by NTU Library & TKU Library IR team.
Scope Tips:
  • please add "double quotation mark" for query phrases to get precise results
  • please goto advance search for comprehansive author search
  • Adv. Search
    HomeLoginUploadHelpAboutAdminister Goto mobile version
    Please use this identifier to cite or link to this item: http://tkuir.lib.tku.edu.tw:8080/dspace/handle/987654321/111899

    Title: A feasibility study of stateful automaton packet inspection for streaming application detection systems
    Authors: Kuo-Kun Tseng;Jiao Lo;Yiming Liu;Shih-Hao Chang;Madjid Merabti;Felix, C. K. Ng;C. H. Wu
    Keywords: Firewall;packet classification;stateful automaton;Aho–Corasick
    Date: 2016-09-22
    Issue Date: 2017-10-31 02:10:53 (UTC+8)
    Publisher: Taylor & Francis
    Abstract: The rapid development of the internet has brought huge benefits and social impacts; however, internet security has also become a great problem for users, since traditional approaches to packet classification cannot achieve satisfactory detection performance due to their low accuracy and efficiency. In this paper, a new stateful packet inspection method is introduced, which can be embedded in the network gateway and used by a streaming application detection system. This new detection method leverages the inexact automaton approach, using part of the header field and part of the application layer data of a packet. Based on this approach, an advanced detection system is proposed for streaming applications. The workflow of the system involves two stages: the training stage and the detection stage. In the training stage, the system initially captures characteristic patterns from a set of application packet flows. After this training is completed, the detection stage allows the user to detect the target application by capturing new application flows. This new detection approach is also evaluated using experimental analysis; the results of this analysis show that this new approach not only simplifies the management of the state detection system, but also improves the accuracy of data flow detection, making it feasible for real-world network applications.
    Relation: Journal Enterprise Information Systems 11(9), p.1317-1336
    DOI: 10.1080/17517575.2016.1234070
    Appears in Collections:[Graduate Institute & Department of Computer Science and Information Engineering] Journal Article

    Files in This Item:

    File Description SizeFormat

    All items in 機構典藏 are protected by copyright, with all rights reserved.

    DSpace Software Copyright © 2002-2004  MIT &  Hewlett-Packard  /   Enhanced by   NTU Library & TKU Library IR teams. Copyright ©   - Feedback