P2P业务流量在对互联网应用起巨大推动作用的同时,也带来了因资源过度占用而引起的网络拥塞以及安全隐患等问题,妨碍了正常的网络业务的开展。为了保证网络能正常有序的运行,有必要对P2P流量进行控制。但是,随着动态端口和数据加密技术的出现,传统的流量识别方法面临着巨大的挑战。简要介绍了三种主要的流量识别技术,并且比较了它们的优缺点。着重对基于流特征的流量识别方法效率低下的原因做了详细的分析,分别指出了引起误报和漏报的原因,并且给出了相应的解决方案。实验证明:文中方法能够有效提高P2P流量识别效率。
The P2P traffic played a huge role in the Interact promoting. At the same time it has also brought occupation, network oongestion and safety problems. It is necessary to have a control over the P2P traffic. However, with the emergenee of dyanmie port and SSL, the P2P traffic identification is becoming more and more challenging. This article briefly introduced the main technologies of P2P traffic identification including the routing way such as port scan, deep packet inspection and transport layer identification, and makes a heavy weight on the analysis about the reasons of low efficiency of the technique based upon P2P traffic characteristics. Finally, this method shows high efficiency in the test experiment.