摘要
IPv6协议是现有IP协议的替代版本,针对其协议的识别具有很重要的意义。传统的协议识别均为基于完整的数据包进行的,当面对不完整数据包时,这些协议识别方案会遇到不同的瓶颈与难题。于是提出一种基于比特流的协议识别方案,该方案综合了传统协议识别技术中的模式匹配算法,同时采用隐式马尔科夫模型对量化后的数据进行处理和计算,以达到对比特流进行协议识别的功能。该方案的优点是能够克服数据包不完整的缺点,同时隐式马尔科夫模型的引入使得协议识别所需时间大大降低,是一种切实可行且较为有效的协议识别方案。
IPv6 is the alternative version of existing IP protocol, hence its identification becomes very meaningful. However, traditional methods are all based on full packets, and when facing the incomplete packets, these identification schemes would meet various bottle-necks and challenges. A new method for protocol identification based on bit stream is proposed under this situation. This solution combines the pattern match algorithm used in traditional ways and HMM model and calculates the data measured after pre-process. It could overcome the flaws of incomplete packets, and greatly reduce the time cost for protocol identification. And experiment indicates that this solution is feasible and fairly effective.
出处
《信息安全与通信保密》
2013年第1期65-67,共3页
Information Security and Communications Privacy