A Novel Device Identification Method Based on Passive Measurement

Joint Authors

Jiang, Jianguo
Sun, Wei
Zhang, Hao
Cai, Li-jun
Yu, Ai-min
Shi, Jin-qiao

Source

Security and Communication Networks

Issue

Vol. 2019, Issue 2019 (31 Dec. 2019), pp.1-11, 11 p.

Publisher

Hindawi Publishing Corporation

Publication Date

2019-06-23

Country of Publication

Egypt

No. of Pages

11

Main Subjects

Information Technology and Computer Science

Abstract EN

Nowadays, with the continuous integration of production network and business network, more and more Industrial Internet of Things and Internal Office Network have been interconnected and evolved into a large-scale enterprise-level intraindustry network.

Terminal devices are the basic units of internal network.

Accurate identification of the type of device corresponding to the IP address and detailed description of the communication behavior of the device are of great significance for conducting network security risk assessment, hidden danger investigation, and threat warning.

Traditional cyberspace surveying and mapping techniques take the form of active measurement, but they cannot be transplanted to large-scale intranet.

Resources or specific targets in internal networks are often protected by firewalls, VPNs, gateways, and other technologies, so they are difficult to analyze and determine by active measurement.

In this paper, a passive measurement method is proposed to identify and characterize devices in the network through real traffic data.

Firstly, a new graph structure mining method is used to determine the server-like devices and host-like devices; then, the NAT-like devices are determined by quantitative analysis of traffic; finally, by qualitative analysis of the NAT-like device traffic, it is determined whether there are server-like devices behind the NAT-like device.

This method will prove to be useful in identifying all kinds of devices in network data traffic, detecting unauthorized NAT-like devices and whether there are server-like devices behind the NAT-like devices.

American Psychological Association (APA)

Sun, Wei& Zhang, Hao& Cai, Li-jun& Yu, Ai-min& Shi, Jin-qiao& Jiang, Jianguo. 2019. A Novel Device Identification Method Based on Passive Measurement. Security and Communication Networks،Vol. 2019, no. 2019, pp.1-11.
https://search.emarefa.net/detail/BIM-1210498

Modern Language Association (MLA)

Sun, Wei…[et al.]. A Novel Device Identification Method Based on Passive Measurement. Security and Communication Networks No. 2019 (2019), pp.1-11.
https://search.emarefa.net/detail/BIM-1210498

American Medical Association (AMA)

Sun, Wei& Zhang, Hao& Cai, Li-jun& Yu, Ai-min& Shi, Jin-qiao& Jiang, Jianguo. A Novel Device Identification Method Based on Passive Measurement. Security and Communication Networks. 2019. Vol. 2019, no. 2019, pp.1-11.
https://search.emarefa.net/detail/BIM-1210498

Data Type

Journal Articles

Language

English

Notes

Includes bibliographical references

Record ID

BIM-1210498