38th Annual IEEE Conference on Local Computer Networks - Workshops 2013
DOI: 10.1109/lcnw.2013.6758538
|View full text |Cite
|
Sign up to set email alerts
|

Measuring the accuracy of open-source payload-based traffic classifiers using popular Internet applications

Abstract: Open-source payload-based traffic classifiers are frequently used as a source of ground truth in the traffic classification research field. However, there have been no comprehensive studies that provide evidence that the classifications produced by these software tools are sufficiently accurate for this purpose. In this paper, we present the results of an investigation into the accuracy of four open-source traffic classifiers (L7 Filter, nDPI, libprotoident and tstat) using packet traces captured while using a… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
1
1
1

Citation Types

0
10
0

Year Published

2014
2014
2021
2021

Publication Types

Select...
4
2
1

Relationship

0
7

Authors

Journals

citations
Cited by 16 publications
(14 citation statements)
references
References 18 publications
0
10
0
Order By: Relevance
“…Sensitivity measures the proportion of true positives, that is cases where the firewall correctly blocked data traffic, while specificity measures the proportion of true negatives, that is data traffic that was correctly allowed to pass through the firewall. Accuracy is a term that encompasses both sensitivity and specificity (Zhu et al, 2010) (Alcock & Nelson, 2013). Calculation of sensitivity and specificity value are defined as follows:…”
Section: A Assessment Methodologymentioning
confidence: 99%
“…Sensitivity measures the proportion of true positives, that is cases where the firewall correctly blocked data traffic, while specificity measures the proportion of true negatives, that is data traffic that was correctly allowed to pass through the firewall. Accuracy is a term that encompasses both sensitivity and specificity (Zhu et al, 2010) (Alcock & Nelson, 2013). Calculation of sensitivity and specificity value are defined as follows:…”
Section: A Assessment Methodologymentioning
confidence: 99%
“…Practical studies suggest that (Alcock and Nelson, 2013), Hadoop/MapReduce tool offers a variety of flexibility advantages for measurement and analysis processes of internet traffic. Adopting online network simulation, the researchers test Hadoop MapReduce.…”
Section: Comparisons Review Of Internet Traffic Measuerment and Analymentioning
confidence: 99%
“…So-In (2009), Conducted practical comparisons between different traffic measurement and analysis tools that included L7 filter and Tstat approaches. Deploying a variety of network capabilities and different transferring protocols, comparisons were drawn to account for the ability of measuring and analyzing the internet traffic (Alcock and Nelson, 2013).…”
Section: Comparisons Review Of Internet Traffic Measuerment and Analymentioning
confidence: 99%
“…The dataset was labeled using a port-based technique with the problems of reliability it implies [9,21,22]. Unlike these previous works, our solution is based on a more reliable labeling technique [2,3,7,8] and is evaluated with a comprehensive dataset with evolving data streams (i.e., 13 years of traffic, 4 billions of flows). We also perform a complete study of HAT in order to understand the impact of its different parameters on the classification of network traffic.…”
Section: Related Workmentioning
confidence: 99%
“…State-of-the-art proposals for traffic classification are usually based on Deep Packet Inspection (DPI) or Machine Learning (ML) techniques [2][3][4][5][6][7][8][9]. These techniques extract in an offline phase a set of patterns, rules or models that capture a static view of a particular network and moment of time from a training dataset.…”
Section: Introductionmentioning
confidence: 99%