Deakin University
Browse

Online NetFPGA decision tree statistical traffic classifier

Version 2 2024-06-13, 12:21
Version 1 2019-05-17, 12:54
journal contribution
posted on 2024-06-13, 12:21 authored by A Monemi, R Zarei, MN Marsono
Classifying online network traffic is becoming critical in network management and security. Recently, new classification methods based on analysis of statistical features of transport layer traffic have been proposed. While these new methods address the limitations of the port based and payload based traffic classification, the current software-based solutions are not fast enough to deal with the traffic of today's high-speed networks. In this paper, we propose an online statistical traffic classifier using the C4.5 machine learning algorithm running on the NetFPGA platform. Our NetFPGA classifier is constructed by adding three main modules to the NetFPGA reference switch design; a Netflow module, a feature extractor module, and a C4.5 search tree classifier. The proposed classifier is able to classify the input traffics at the maximum line speed of the NetFPGA platform, i.e. 8 Gbps without any packet loss. Our method is based on the statistical features of the first few packets of a flow. The flow is classified just a few micro seconds after receiving the desired number of packets. © 2013 Elsevier B.V. All rights reserved.

History

Journal

Computer communications

Volume

36

Article number

12

Pagination

1329-1340

Location

Amsterdam, The Netherlands

ISSN

0140-3664

Language

eng

Publication classification

C1.1 Refereed article in a scholarly journal

Copyright notice

2013, Elsevier B.V.

Issue

12

Publisher

Elsevier

Usage metrics

    Research Publications

    Exports

    RefWorks
    BibTeX
    Ref. manager
    Endnote
    DataCite
    NLM
    DC