Author Login Editor-in-Chief Peer Review Editor Work Office Work

Computer Engineering ›› 2011, Vol. 37 ›› Issue (24): 61-63. doi: 10.3969/j.issn.1000-3428.2011.24.020

• Networks and Communications • Previous Articles     Next Articles

Data Flow Clustering Detection Approach of Network Heartbeat Packet Sequence

YI Jun-kai 1, CHEN Li 1, SUN Jian-wei 2   

  1. (College of Information Science and Technology, Beijing University of Chemical Technology, Beijing 100029, China)
  • Received:2011-06-03 Online:2011-12-20 Published:2011-12-20

网络心跳包序列的数据流分簇检测方法

易军凯 1,陈 利 1,孙建伟 2   

  1. (北京化工大学信息科学与技术学院,北京 100029)
  • 作者简介:易军凯(1972-),男,教授、博士,主研方向:信息安全,优化调度;陈 利,硕士研究生;孙建伟,副教授、博士
  • 基金资助:
    国家部委基金资助项目

Abstract: Based on timing analysis of network sessions, this paper puts forward a detection approach of heartbeat packet sequence based on clustering processing. It processes the network data stream with time clustering, expands the cluster collection by periodic features, and screens out the clusters which do not meet the characteristics, and detects the heartbeat packet sequence within steady cluster collection. Experimental results show that this approach can achieve higher correct detection rate, real-time detection and processing.

Key words: periodic sequence, heartbeat packet, clustering, heartbeat packet detection, network synchronous

摘要: 在对网络会话进行时序分析的基础上,提出基于数据流分簇处理的心跳包序列检测方法。对数据流进行时序分簇处理,按周期性特征扩充簇集合,筛除不符合特征的簇对象,根据稳定的簇集合检测心跳包序列。实验结果表明,该方法检测率较高、误检率较低,能够实现实时检测和处理。

关键词: 周期性序列, 心跳包, 分簇, 心跳包检测, 网络同步

CLC Number: