• Title/Summary/Keyword: 패킷 분석기

Search Result 152, Processing Time 0.024 seconds

Design and Implementation of the Internetworking Architecture between IPv4 and IPv6 in IMS based Mobile networks (IMS기반 이동패킷망에서의 IPv4/IPv6 연동구조 설계 및 구현)

  • You, Seugn-Kwan;Kim, Young-Han
    • Journal of the Institute of Electronics Engineers of Korea TC
    • /
    • v.43 no.11 s.353
    • /
    • pp.168-174
    • /
    • 2006
  • In this paper, we propose an architecture for communication between the IPv4-based UA and the IPv6-based UA in IMS based Mobile Networks, and design and implement the IMS protocol Translator for verification of the architecture. For the design of the internetworking between the IPv4 and the IPv6, we analyze the transition mechanisms and investigate the protocol translator. The IMS protocol translator is composed of the IMS-ALG(IP Multimedia Subsystem - Application Level Gateway) and TrGW(Translation Gateway), and the conformance of these components are verified by experiments.

P2P Traffic Classification using Advanced Heuristic Rules and Analysis of Decision Tree Algorithms (개선된 휴리스틱 규칙 및 의사 결정 트리 분석을 이용한 P2P 트래픽 분류 기법)

  • Ye, Wujian;Cho, Kyungsan
    • Journal of the Korea Society of Computer and Information
    • /
    • v.19 no.3
    • /
    • pp.45-54
    • /
    • 2014
  • In this paper, an improved two-step P2P traffic classification scheme is proposed to overcome the limitations of the existing methods. The first step is a signature-based classifier at the packet-level. The second step consists of pattern heuristic rules and a statistics-based classifier at the flow-level. With pattern heuristic rules, the accuracy can be improved and the amount of traffic to be classified by statistics-based classifier can be reduced. Based on the analysis of different decision tree algorithms, the statistics-based classifier is implemented with REPTree. In addition, the ensemble algorithm is used to improve the performance of statistics-based classifier Through the verification with the real datasets, it is shown that our hybrid scheme provides higher accuracy and lower overhead compared to other existing schemes.

Performance Analyses of Encryption Accelerator based on 2-Chip Companion Crypto ASICs for Economic VPN System (경제적인 VPN 시스템 구축을 위한 2-Chip 기반의 암호가속기 성능분석)

  • Lee Wan-Bok;Kim Jung-Tae
    • Journal of the Korea Institute of Information and Communication Engineering
    • /
    • v.10 no.2
    • /
    • pp.338-343
    • /
    • 2006
  • This paper describes about the design concept and the architecture of an economic VPN system which can perform fast crypto operations with cheap cost. The essence of the proposed system architecture is consisting of the system with two companion chips dedicated to VPN: one chip is a multi-purpose network processor for security machine and the other is a crypto acceleration chip which encrypt and decrypt network packets in a high speed. This study also addresses about some realizations that is required for fast prototyping such as the porting of an operating system, the establishment of compiler tool chain, the implementation of device drivers and the design of IPSec security engine. Especially, the second chip supports the most time consuming block cipher algorithms including 3DES, AES, and SEED and its performance was evaluated.

Performance Evaluation of TCP in Hybrid Satellite-Terrestrial Relay Networks (하이브리드 위성-지상 중계기 네트워크에서 TCP 성능 분석)

  • Lee, Kyu-Hwan;Jang, Dong-Hyuk;Lee, Sung-Jae
    • The Journal of Korean Institute of Communications and Information Sciences
    • /
    • v.42 no.1
    • /
    • pp.121-127
    • /
    • 2017
  • In the land mobile satellite (LMS) communication, a hybrid satellite-terrestrial relay networks (HSTRNs) using a maximal ratio combining (MRC) scheme are widely used to enhance the quality of signal from a satellite. In this paper, we derive equations for the TCP throughput and the spectral efficiency in the HSTRN and analyze results of the performance evaluation for TCP in various environments. In the simulation results, it is shown that increasing the number of terrestrial relays can enhance the TCP throughput and spectral efficiency thanks to the MRC scheme. However, the usage of the static number of terrestrial relays considering no channel states would cause the overhead. Furthermore, it has a limitation to enhance the network performance by only MRC scheme in HSTRN because the TCP performance is sensitive to the packet los rate. Therefore, we discuss the possible solutions that can additionally enhance the network performance and reduce the overhead.

Traffic Processing Capacity in the IMT-2000 Network (IMT-2000 망에서의 트래픽 처리용량)

  • 장희선;신현철
    • Journal of the Korea Society of Computer and Information
    • /
    • v.7 no.4
    • /
    • pp.150-156
    • /
    • 2002
  • In this paper, the traffic carrying capacity of the IMT-2000 ATM-MSC is analyzed by using the reference throughput based on ITU-R. The IMT-2000 services are classified into circuit switching(speech. circuit-switched data. high interactive multimedia) and packet switching(simple message, medium multimedia, high multimedia). The indoor vehicle and pedestrian users are considered. The AAL type 2 for the speech are considered. The ratio of indoor:pedestrian:vehicle are assumed to be 40:40:20%, and size 256 of ATM-MSC are designed.

  • PDF

Flow-based Internet Traffic Measurement and Analysis (플로우 기반 인터넷 트래픽 측정 및 분석)

  • 이영식;옥도민;최양희;신효정;진영민
    • Proceedings of the Korean Information Science Society Conference
    • /
    • 1998.10a
    • /
    • pp.515-517
    • /
    • 1998
  • 인터넷 급속도로 사용자, 트래픽, 호스트, 네트워크 등이 증가하고 있다. 이러한 증가에 따라 인터넷의 효과적인 관리를 위해서는 기본적인 인터넷 사용 트래픽의 측정 및 분석이 필요하다. 최근의 OC3mon, NetFlow System등의 트래픽 측정도구들은 고속의 인터넷 백본에서 유통되는 트랙픽들의 특성을 파악할 수 있도록 한다. 특히, 고속 인터넷 플로우 스위칭이 이용하는 IP패킷들의 연속적인 흐름인 플로운(flow)를 바탕으로 인터넷 트래픽 특성을 파악 할 수 있도록 한다. 본 논문에서는 플로우 기반의 인터넷 트래픽 측정도구 Cisco 라우터의 NetFlow 인터페이스와 Cflowd 수집기를 사용하여 국내 교육 인터넷 망의 트래픽을 측정하여 분석한 국내 인터넷 트래픽 특성 결과를 제시한다.

  • PDF

Scenarios and Considerations of IPv6 in IEEE 802.16/WiBro Networks (IEEE 802.16/와이브로 망에서의 IPv6 적용 시나리오 및 네트워크 기술 이슈 분석)

  • Shin, M.K.;Lee, J.C.;Kim, H.J.;Moon, J.M.;Han, Y.H.
    • Electronics and Telecommunications Trends
    • /
    • v.21 no.2 s.98
    • /
    • pp.192-199
    • /
    • 2006
  • 본 고에서는 IEEE 802.16/와이브로 망에서의 IPv6 적용에 따른 시나리오 및 기존IPv6 프로토콜에 대한 네트워크 이슈들을 기술한다. 이를 위해 먼저 IEEE 802.16 망의 특성 및 IPv6 적용에 따른 문제점들을 분석하고, IPv6 적용 가능한 시나리오를 서비스 방법, 시스템 구조, CS 적용 방법, 프리픽스(prefix) 할당 방법에 따라 구분하여 제안한다. 이를 기준으로 IPv6 이웃 탐색(neighbor discovery), IPv6 패킷 전송, 이동성, 멀티캐스트, 보안 프로토콜 등이 어떠한 제한 및 수정이 요구되는지에 대해 기술한다.

A architecture and control method of Streaming Packet Scheduler at 100bps for Guaranteed QoS of Internet and Broadcasting Services (인터넷 및 방송서비스의 QoS 보장을 위한 10Gbps급 스트리밍 패킷 스케줄러 구조 및 제어방법)

  • Kim Kwang-Ok;Park Wan-Ki;Choi Byeoun-Chul;Kwak Dong-Yong
    • Journal of the Institute of Electronics Engineers of Korea TC
    • /
    • v.41 no.1
    • /
    • pp.23-34
    • /
    • 2004
  • This paper presents architecture and control method of packet scheduler to guarantee QoS of high quality streaming services in high-speed packet-switched networks. Since streaming services need far more stringent QoS requirements than the typical sort of burst data applications, they should be guaranteed minimum bandwidth and end-to-end delay bound to each flow, regardless of the behavior of other flows. To meet these requirements, a packet scheduler isolate a flow from the undesirable effects of other flows and provides end-to-end delay guarantees for individual flow and divides stringently the available link bandwidth among flows sharing the link. Until now, many vendors are developing traffic management chips running at 10Gbps, but most of chips have drawbacks to support high quality streaming services. In this paper, we investigate the drawbacks of commercial TM chips and traffic characteristic of streaming services and present implementation frameworks of the proposed packet scheduler. Finally, we analyze the simulation results of the proposed scheduler.

Design and Implementation of Packet Filtering System for IPv4/IPv6 Tunneling Environment (IPv4/IPv6 터널링 환경에 적합한 패킷 필터링 기능 설계 및 구현)

  • Heo, Seok-Yeol;Lee, Wan-Jik;Kim, Kyung-Jun;Jeong, Sang-Jin;Shin, Myung-Ki;Kim, Hyoung-Jun;Han, Ki-Jun
    • Journal of KIISE:Information Networking
    • /
    • v.33 no.6
    • /
    • pp.407-419
    • /
    • 2006
  • As substituting IPv6 network for all IPv4 network in a short time seems unattainable due to high cost and technical limitation, IPv4 and IPv6 are expected to coexist for a certain period of time. Under the co]existing environment of IPv4 and IPv6, interworking brings a number of extra security considerations even if it may have no security problem for each protocol respectively. Thus, the analysis and solutions for those various attacks toward IPv4/IPv6 interworking-related security are inevitably required for the sake of effective transition and settlement to IPv6. In this paper we carried out a proper rule of packet filtering for IPv6-in-IPv4 tunneling interworking environment to protect the IPv4/IPv6 interworking-related security attacks. Design and implementation of the packet filtering system suitable for IPv4/IPv6 tunneling environment in the form of Linux netfilter and ip6tables are also shown. Thru this study, the packet filtering system was found operating correctly ill the tunneling mechanism.

Evaluation of AFDX Certification Support System by both AFDX Tap and AFDX Analyzer (AFDX Tap과 AFDX 프로토콜 분석기를 이용한 AFDX 네트워크 인증 기술)

  • Park, Pusik;Son, Myeonghwan;Lee, Jeongdo;Yoon, Jongho
    • Journal of Aerospace System Engineering
    • /
    • v.16 no.1
    • /
    • pp.1-11
    • /
    • 2022
  • Avionics Full-DupleX Ethernet (AFDX) is a next-generation avionics network interface technology that is widely applied in the latest aircraft to replace ARINC429 and MIL-STD-1553B. However, the criteria for authenticating an avionics network consisting of AFDX are very scarce. Using AFDX Protocol Analyzer developed by the Korea Electronics Technology Research Institute and AFDX Tap developed by the Korea Aerospace University, we proposed a technology of certification practicality that can verify the normal functioning of avionics equipment with AFDX network interface. Our proposed technology provided the ability to collect precision packets, to verify AFDX specification compliance, and perform automatic tests to reduce the time and cost of authentication of AFDX avionics devices.