Skip to main content
Top

2016 | OriginalPaper | Chapter

A Fine-Grained Large-Scale NAT Detection Method

Authors : Bin Yan, Liang Huang, Gaopeng Gou, Yuanbo Guo, Yibao Bao

Published in: Advanced Multimedia and Ubiquitous Engineering

Publisher: Springer Singapore

Activate our intelligent search to find suitable subject content or patents.

search-config
loading …

Abstract

With the explosive growth of mobile terminal access to the Network and the shortage of IPv4, the Network Address Translation (NAT) technology has become more and more widely used. The technology not only provides users with convenient access to the Internet, but also brings trouble to network operators and regulatory authorities. This system NAT detection using NetFlow data, is often used for monitoring and forensics analysis in large networks. In the paper, in order to detect NAT devices, an Out-in Activity Degree method based on network behavior is proposed. Our approach works completely passively and is based on NetFlow data only. Our approach gets accuracy of 91.2 % in real large-scale network for a long time.

Dont have a licence yet? Then find out more about our products and how to get one now:

Springer Professional "Wirtschaft+Technik"

Online-Abonnement

Mit Springer Professional "Wirtschaft+Technik" erhalten Sie Zugriff auf:

  • über 102.000 Bücher
  • über 537 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Maschinenbau + Werkstoffe
  • Versicherung + Risiko

Jetzt Wissensvorsprung sichern!

Springer Professional "Technik"

Online-Abonnement

Mit Springer Professional "Technik" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 390 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Maschinenbau + Werkstoffe




 

Jetzt Wissensvorsprung sichern!

Springer Professional "Wirtschaft"

Online-Abonnement

Mit Springer Professional "Wirtschaft" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 340 Zeitschriften

aus folgenden Fachgebieten:

  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Versicherung + Risiko




Jetzt Wissensvorsprung sichern!

Literature
1.
go back to reference Bellovin SM (2002) A technique for counting NATted hosts. In: Proceedings of the 2nd ACM SIGCOMM workshop on internet measurement, IMW 2002. ACM, New York, pp 267–272 Bellovin SM (2002) A technique for counting NATted hosts. In: Proceedings of the 2nd ACM SIGCOMM workshop on internet measurement, IMW 2002. ACM, New York, pp 267–272
2.
go back to reference Straka K, Manes G (2006) In international federation for information processing. In: Oliver M, Shenoi S (eds) Advances in digital forensics II. Springer, Boston, pp 239–246 Straka K, Manes G (2006) In international federation for information processing. In: Oliver M, Shenoi S (eds) Advances in digital forensics II. Springer, Boston, pp 239–246
3.
go back to reference Kohno T, Broido A, Claffy KC (2005) Remote physical device fingerprinting. IEEE Trans. Dependable Secure Comput. 2(2):93–108CrossRef Kohno T, Broido A, Claffy KC (2005) Remote physical device fingerprinting. IEEE Trans. Dependable Secure Comput. 2(2):93–108CrossRef
4.
go back to reference Rui L, Hongliang Z, Yang X, Yixian Y, Cong W (2009) Remote NAT detect algorithm based on support vector machine. In: International conference on information engineering and computer science, ICIECS 2009, pp 1–4 Rui L, Hongliang Z, Yang X, Yixian Y, Cong W (2009) Remote NAT detect algorithm based on support vector machine. In: International conference on information engineering and computer science, ICIECS 2009, pp 1–4
5.
go back to reference Rui L, Hongliang Z, Yang X, Shoushan L, Yixian Y, Cong W (2009) Passive NATted hosts detect algorithm based on directed acyclic graph support vector machine. In: International conference on multimedia information networking and security, MINES 2009, vol 2, pp 474–477 Rui L, Hongliang Z, Yang X, Shoushan L, Yixian Y, Cong W (2009) Passive NATted hosts detect algorithm based on directed acyclic graph support vector machine. In: International conference on multimedia information networking and security, MINES 2009, vol 2, pp 474–477
6.
go back to reference Krmicek V, Vykopal J, Krejci R (2009) Netflow based system for NAT detection. In: Proceedings of the 5th international student workshop on emerging networking experiments and technologies CoNext student workshop 2009, pp 23–24 Krmicek V, Vykopal J, Krejci R (2009) Netflow based system for NAT detection. In: Proceedings of the 5th international student workshop on emerging networking experiments and technologies CoNext student workshop 2009, pp 23–24
Metadata
Title
A Fine-Grained Large-Scale NAT Detection Method
Authors
Bin Yan
Liang Huang
Gaopeng Gou
Yuanbo Guo
Yibao Bao
Copyright Year
2016
Publisher
Springer Singapore
DOI
https://doi.org/10.1007/978-981-10-1536-6_64