
Faculty of Computer Science
University of New Brunswick
550 Windsor Street, ITC314
Fredericton, NB, E3B 5A3
Phone: 506-453-4901
Fax: 506-453-3566
Automatic Discovery and Classification of Network Applications
Overview
Identifying network traffic into different applications is very challenging and is still an issue yet to be solved with the development of unlimited number of applications in the next generation network. Port number and payload content based traffic classification were an effective way in the early days of the Internet. They, however, provide very limited information nowadays (e.g. empirical observation shows 40% network traffic is appeared to be unknown on a WiFi network). As a result, the main goal for this project is to build a back-end module working in parallel with the QRadar application detection engine, which focuses only on classifying those applications that the signature-based classifier cannot identify and that appear to the QRadar as unknown.
Related Publications
|
||||||||||||||||||||||