Journal of the Korea Institute of Information and Communication Engineering (한국정보통신학회논문지)
- Volume 8 Issue 5
- /
- Pages.995-1003
- /
- 2004
- /
- 2234-4772(pISSN)
- /
- 2288-4165(eISSN)
Abstract
A number of Internet application services are used with the development of Internet backbone nowadays. Well-known services such as WWW, ]n, email are provided at first time. Tremendous unwell-known services are presented according to the demands of various contents. After analyzing PDU information of the packet using unwell-known port travelling on the internet, searching internet service type and its statistical data is provided with internet traffic analyst as very useful information. This paper presents the mechanism to extract the internet application services operated on (un)well-known port of UDP or TCP used occasionally through netflow and tcpdump method introduced by ethereal and the operation scheme of the service. Afterwards to get the detailed statistics of the analyzed application service, the agent and the server environment, the agent gathering raw data traffics and the server adapting the traffic received from the agent BNF(Backus-Naur Form) method, is also introduced. Adapting the presented mechanism eve. LAN of Andong national university, the internet traffic service type and the detailed statistics of the analyzed application services which provides with internet traffic analyst are presented as very useful information.
File
References
- 'Sniffer_Pro Protocol Analyzer User manual', http://www.snifferpro.com
- 'pA100 Protocol Analyzer User manual', C&C 인스투루먼트, 2000, http://www.cncinst.com
- EtherealProtocol Analyzer User manual', http://www.ethereal.com
- 'rfc 1700: Assigned Number', http://www.iana.com
- http://www.caida.org
- http://www.tcpdump.org
- rfc2234: Augmented BNF for Syntax Specification: ABNF'