CN105049277B - A kind of network flow generation method based on data flow characteristics - Google Patents

A kind of network flow generation method based on data flow characteristics Download PDF

Info

Publication number
CN105049277B
CN105049277B CN201510308828.8A CN201510308828A CN105049277B CN 105049277 B CN105049277 B CN 105049277B CN 201510308828 A CN201510308828 A CN 201510308828A CN 105049277 B CN105049277 B CN 105049277B
Authority
CN
China
Prior art keywords
network
message
flow
data
data flow
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Expired - Fee Related
Application number
CN201510308828.8A
Other languages
Chinese (zh)
Other versions
CN105049277A (en
Inventor
唐积强
王东滨
邹潇湘
董琳
颜靖华
张勖
智慧
张俊辉
吴可欣
晋红亮
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Beijing University of Posts and Telecommunications
National Computer Network and Information Security Management Center
Original Assignee
Beijing University of Posts and Telecommunications
National Computer Network and Information Security Management Center
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Beijing University of Posts and Telecommunications, National Computer Network and Information Security Management Center filed Critical Beijing University of Posts and Telecommunications
Priority to CN201510308828.8A priority Critical patent/CN105049277B/en
Publication of CN105049277A publication Critical patent/CN105049277A/en
Application granted granted Critical
Publication of CN105049277B publication Critical patent/CN105049277B/en
Expired - Fee Related legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L43/00Arrangements for monitoring or testing data switching networks
    • H04L43/08Monitoring or testing based on specific metrics, e.g. QoS, energy consumption or environmental parameters

Landscapes

  • Engineering & Computer Science (AREA)
  • Environmental & Geological Engineering (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)

Abstract

The network traffic data generation method based on data flow characteristics that the present invention provides a kind of.The key of the present invention is that the characteristic attribute value by network data flow in unit interval window is introduced into network flow generation method.This method can be distributed according to the newly-increased network data flow quantity in the unit interval window of configuration, network data flow continuous time and its distribution, the message amount distribution of all types of network data flows, message transfer time and the characteristic values such as message size distribution, construct the network traffic data in unit interval window, it realizes that network traffic data generates, the characteristic attribute of the network flow generated in each time window is made to meet each characteristic attribute value of network data flow of configuration.Network traffic data generation method based on data flow characteristics can be generated with the time and the network traffic data for meeting particular community feature in the unit interval of fluctuating change.

Description

A kind of network flow generation method based on data flow characteristics
(1) technical field
The present invention relates to network flow generation techniques.
(2) background technology
The problem of traffic generating problem is always domestic and international academia, business circles extensive concern.Real traffic is in now netting The every network security of support and the experiment of information security items and the extremely important resource of test job, compared to directly using instrument The traditional analog flow of generation, live network flow have the characteristics that the various aspects such as the authenticity of content and feature, complexity, instrument It cannot achieve the long-term network flow for meeting live network traffic characteristic of lasting generation.However, real traffic has instantaneous spy Property, often there is not reproducibility and uncontrollability, be unfavorable for the positioning and analysis of problem when device emulation test;Meanwhile very Real traffic source in real network environment, reacted user behavior, often carry a large amount of user behavior information and personal hidden Personal letter ceases, this just significantly limits the permission use scope and service efficiency of real traffic.How according to main feature point The network flow of cloth law generation approaching to reality data flows of traffic feature is the effective ways for solving the problems, such as real traffic and using, Be lifting means test, network service, safety product test environment structure important channel.
Network flow generation method based on data flow characteristics is feature (five-tuple stream information, the data according to data flow Flow size, the stream duration, stream the features such as quantity) regularity of distribution generates network flow.Uhlig, S. used stream in 2001 Arrival process, the size of stream and stream three variables of rate control the generation of flow, wherein take Poisson distribution control stream Arrival process, the size of stream takes exponential distribution, flow in rate then take constant, Self-Similar Network Traffic can be generated.King Peaks Lin et al. send a series of streams to generate flow using multiple windows threads, and each stream is described with four parameters: The transmission time interval distribution of packet, the Size Distribution of packet, duration of stream, stream transmission interval.Time interval, packet size point Cloth, stream transmission interval can be appointed as constant, be uniformly distributed, exponential distribution, normal distribution, pareto distributions and index point Cloth.The different parameter distribution of user configuration controls transmitting terminal according to configuration information from controller end and asks transmission number to receiving terminal According to generation flow.The Harpoon tools that University of Wisconsin-Madison pungent university's Madison branch school is developed use the thought of flow, in IP Flow-level generates representative data traffic.Count and analyze the size of stream, Connection Time interval, source mesh IP The experience of location, session number active in certain time etc. is distributed, and uses client-server form according to the distribution of these experiences The generation for realizing flow, is consistent with the size of the byte of original flow, number-of-packet and stream.Ixia companies BreakingPoint test platforms simulate corresponding mixed application stream to meet the needs of test according to user configuration.
In recent years, network size constantly expands, and network structure is increasingly sophisticated, leads to composition, the network flow of network flow The complexity raising of characteristic, how according to traffic characteristic distribution generation and flow similar in real traffic, tested for equipment, Improve network service and the development of safety product provides important technology and supports and ensure.On the one hand, by simulating true net Network flow is Topological expansion, procotol is improved, network service quality improvement provides reliability and analysis on its rationality, with full The increasingly increased network demand of foot, ensures the network service of stability and high efficiency;On the other hand, it is upgrading network equipment, network system Increasing is built, safety product development provides reliable Testing Platform.
(3) invention content
The network flow generation method based on data flow characteristics that the object of the present invention is to provide a kind of.Data Stream on Networks Feature generates the network flow transmitted on express network circuit using single device constructing network data stream, is surveyed for equipment Examination improves network service and the development of safety product offer important technology support and ensures.
The present invention in order to realize its goal of the invention used by technical solution be:A kind of network flow based on data flow characteristics Generation method is measured, is included the following steps:
1) each time window network data flow characteristic attribute is loaded, including:In the newly-increased network number of each time window According to stream quantity, network data flow continuous time and its distribution, the message amount distribution of all types of network data flows, message transfer time point The characteristic values such as cloth and message size distribution;
2) in network flow generating process, when each time window starts, according to the actual time window of configuration Newly-increased network data flow quantity newly sets up the network data flow of respective numbers, and true according to network data flow continuous time and its distribution The fixed stream duration window;
3) it according to the statistical information of actual time window network data flow, determines and needs to send network data message at this moment Network data stream information,
4) according to the network data stream information currently selected, transport layer protocol message information is determined;
5) according to the transport layer protocol state of network data flow, the data message type of present construction is determined, then basis The Size Distribution of data message determines the size of network data message load;
6) the transport layer header message of constructing network data message;
7) data network network layers stem is constructed according to the transport layer information of network data flow;
8) according to data network network layers information, data link layer stem is constructed;
9) according to network message transmission time distribution characteristics, network data stream packet sending time is determined;
10) the network data stream packet of construction is sent in the network of determining network interface;
11) according to actual time window network data message amount, determine whether that also network data message needs to construct Transmission if it is continues next network data message construction and transmission, modulation to step 3;
12) judge whether that the network traffic data of also next time window needs to generate, if it is turn to jump to step Rapid 2;Otherwise, task terminates.
A kind of network flow generation method based on data flow characteristics provided by the invention, has the following advantages:The present invention The network traffic data for meeting particular network data flow characteristics attribute can be generated, compared to the tradition for directly using instrument to generate Analogue flow rate, the invention can meet the network of particular network data flow characteristics attribute changed over time long lasting for generation Data traffic, while the network data stream for meeting live network traffic characteristic attribute can be also generated, avoid true stream Amount allows the problem of use scope;It is different from the past that transmission form generation is interacted towards connection using client and server Network flow, but use single device constructing network data flow, the connection-oriented of an independent direction can be generated Network traffic data can also generate two-way connection-oriented network traffic data, wherein sending out report from different network interfaces Text respectively represents the network traffic data that client is sent out or server end is sent out;There is no communicating pair friendships for this method simultaneously Time delay situation caused by mutually, therefore it is capable of the generation network traffic data of higher speed.
(4) it illustrates
Attached drawing 1 is the network flow generation method flow chart based on data flow characteristics;
Attached drawing 2 is the network topological diagram of the embodiment of the present invention.
(5) specific implementation mode
The implementation of the present invention is described in detail below in conjunction with attached drawing.
Include the following steps:
1) each time window network data flow characteristic attribute is loaded, including:In the newly-increased network number of each time window According to stream quantity, network data flow continuous time and its distribution, the message amount distribution of all types of network data flows, message transfer time point The characteristic values such as cloth and message size distribution.These statistical characteristics can derive from network traffic analysis system to live network data It is acquired the statistical nature of processing.
2) in network flow generating process, when each time window starts, according to the actual time window of configuration Newly-increased network data flow quantity newly sets up the network data flow of respective numbers, and true according to network data flow continuous time and its distribution The fixed stream duration window.Thus it controls in the newly generated network data flow quantity of the time window, while determining network At the beginning of data flow and the end time of network data flow.In the time window, not only there is newly-increased network data flow, also wrap Network data flow existing for previous time window is included, these data flows also generate network traffic data in the time window.Newly The network protocol type of generation includes TCP, UDP, SCTP etc..The effective protocol information of the protocol data-flow is generated at random.
3) according to the statistical information of the generation network data message amount of actual time window network data flow, by uniform The random function of distribution determines the network data stream information of a transmission network data message.
4) according to the network data stream information currently selected, it can determine the agreement for the network data message that will be generated, Including transport layer, network layer and data link layer protocol.
5) transport layer protocol and transmission state can determine according to the information of network data flow.The foundation that is attached or Person carries out the construction of load message, and according to the Size Distribution of data message, load is chosen by equally distributed random function The data length of message.
6) according to transport layer protocol state and load information, the transport layer header message of constructing network data message.
7) data network network layers stem is constructed according to the transport layer information of network data flow.
8) according to data network network layers information, data link layer stem is constructed.
9) according to network message transmission time statistical distribution, network data stream packet sending time is determined.
10) the network data stream packet of construction is sent in the network of determining network interface, in the present invention some net Network interface can represent client or server end, show that this rectifies the network data flow for sending some direction.Net shown in Fig. 2 Network topological diagram can generate the connection-oriented network number in an independent direction using single device constructing network data flow According to flow, two-way connection-oriented network traffic data can be also generated, wherein sending out message difference from different network interfaces Represent the network traffic data that client is sent out or server end is sent out.
11) according to actual time window network data message amount, determine whether that also network data message needs to construct Transmission if it is continues next network data message construction and transmission, modulation to step 3.
12) judge whether that the network traffic data of also next time window needs to generate, if it is turn to jump to step Rapid 2;Otherwise, task terminates.

Claims (4)

1. a kind of network flow generation method based on data flow characteristics is generated using single device constructing network data stream The network flow transmitted on express network circuit, can generate with the time and fluctuating change meets each spy in the unit interval Levy the network traffic data of attribute value, it is characterised in that this approach includes the following steps:
1) each time window network data flow characteristic attribute is loaded, including:In the newly-increased network data flow of each time window When quantity, network data flow continuous time and its distribution, the network message distributed number of all types of network data flows, network message transmission Between distribution and network message Size Distribution;
2) in network flow generating process, when each time window starts, according to the newly-increased of the actual time window of configuration Network data flow quantity newly sets up the network data flow of respective numbers, and being determined according to network data flow continuous time and its distribution should Flow duration window;
3) according to the statistical information of actual time window network data flow, the network number for needing to send network message at this moment is determined According to stream information;
4) according to the network data stream information currently selected, transport layer protocol message information is determined;
5) according to the transport layer protocol state of network data flow, the network message type of present construction is determined, then according to network The Size Distribution of message determines the size of network message load;
6) the transport layer stem of tectonic network message;
7) network layer header of tectonic network message;
8) the data link layer stem of tectonic network message;
9) according to network message transmission time distribution characteristics, network message sending time is determined;
10) network message of construction is sent in the network of determining network interface;
11) according to actual time window network message quantity, determine whether that also network message needs to construct transmission, if it is Continue next network message construction and transmission, modulation to step 3;
12) judge whether that the network traffic data of also next time window needs to generate, if it is turn to jump to step 2; Otherwise, task terminates.
2. a kind of network flow generation method based on data flow characteristics according to claim 1, it is characterised in that:It is different The connection-oriented network flow of transmission form generation is interacted using client and server in previous, but is set using separate unit Standby constructing network data flow, can generate the connection-oriented network traffic data in an independent direction, can also generate two-way Connection-oriented network traffic data;Time delay situation caused by this method is interacted there is no communicating pair simultaneously, because This is capable of the generation network traffic data of higher speed.
3. a kind of network flow generation method based on data flow characteristics according to claim 1, it is characterised in that:Step 5) " according to the transport layer protocol state of network data flow, determining the network message type of present construction " described in, refers to current The network message of generation is the handshaking information of network data flow connection, the handshaking information containing load data, response message or contains There is the network message of load data.
4. a kind of network flow generation method based on data flow characteristics according to claim 1, it is characterised in that:Step 10) " being sent to the network message of construction in the network of determining network interface " described in refers to by connecting network line one The network interface at end sends network message, and network message is made to flow through the other end that network line reaches network line, realizes in net The network flow of winding thread road a direction is transmitted.
CN201510308828.8A 2015-06-08 2015-06-08 A kind of network flow generation method based on data flow characteristics Expired - Fee Related CN105049277B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201510308828.8A CN105049277B (en) 2015-06-08 2015-06-08 A kind of network flow generation method based on data flow characteristics

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201510308828.8A CN105049277B (en) 2015-06-08 2015-06-08 A kind of network flow generation method based on data flow characteristics

Publications (2)

Publication Number Publication Date
CN105049277A CN105049277A (en) 2015-11-11
CN105049277B true CN105049277B (en) 2018-11-13

Family

ID=54455498

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201510308828.8A Expired - Fee Related CN105049277B (en) 2015-06-08 2015-06-08 A kind of network flow generation method based on data flow characteristics

Country Status (1)

Country Link
CN (1) CN105049277B (en)

Families Citing this family (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN107864119B (en) * 2017-09-04 2020-09-11 南京理工大学 Network traffic confusion method and system on Android platform

Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101047776A (en) * 2006-04-17 2007-10-03 华为技术有限公司 Mobile broadcast network system and method for implementing synchronous of the network
CN101272291A (en) * 2008-04-29 2008-09-24 北京星网锐捷网络技术有限公司 Network appliance testing method and system
CN101360015A (en) * 2008-09-02 2009-02-04 北京星网锐捷网络技术有限公司 Method, system and apparatus for test network appliance
CN102204168A (en) * 2011-04-26 2011-09-28 华为技术有限公司 Method and apparatus for network traffic simulation
CN104052639A (en) * 2014-07-02 2014-09-17 山东大学 Real-time multi-application network flow identification method based on support vector machine
CN104601583A (en) * 2015-01-21 2015-05-06 国家计算机网络与信息安全管理中心 Online real-time anonymization system and method for IP stream data

Patent Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101047776A (en) * 2006-04-17 2007-10-03 华为技术有限公司 Mobile broadcast network system and method for implementing synchronous of the network
CN101272291A (en) * 2008-04-29 2008-09-24 北京星网锐捷网络技术有限公司 Network appliance testing method and system
CN101360015A (en) * 2008-09-02 2009-02-04 北京星网锐捷网络技术有限公司 Method, system and apparatus for test network appliance
CN102204168A (en) * 2011-04-26 2011-09-28 华为技术有限公司 Method and apparatus for network traffic simulation
CN104052639A (en) * 2014-07-02 2014-09-17 山东大学 Real-time multi-application network flow identification method based on support vector machine
CN104601583A (en) * 2015-01-21 2015-05-06 国家计算机网络与信息安全管理中心 Online real-time anonymization system and method for IP stream data

Non-Patent Citations (2)

* Cited by examiner, † Cited by third party
Title
基于周期性网络流量模型的流量预测;何俊峰; 谢高岗; 杨建华;《计算机应用》;20031031;第23卷(第10期);全文 *
嵌入式TCP/IP协议的FPGA实现;孟俊岭;《中国优秀硕士学位论文全文数据库信息科技辑》;20080115(第1期);正文第二章第2.1.3节 *

Also Published As

Publication number Publication date
CN105049277A (en) 2015-11-11

Similar Documents

Publication Publication Date Title
KR101269671B1 (en) Game grammar based packet capture analyzing apparatus for game testing and its method
CN102480392B (en) Performance test device and working method thereof
CN104065398B (en) A kind of electric power communication network network merges method for designing and the system of test platform
CN106161399A (en) A kind of security service delivery method and system
CN103326901B (en) A kind of power system broadband network performance test methods and system
CN105393508B (en) The method for controlling quality of service and equipment of software defined network
CN110213233B (en) Simulation method and simulation platform for defending against power grid distributed denial of service attack and establishment method thereof
KR101564644B1 (en) Method and system of extracting access control list
CN106559289A (en) The concurrent testing method and device of SSLVPN gateways
CN103078765A (en) Test method and device of network element equipment performance
CN103188719A (en) Medium and high speed sensor network testing system
CN110289984A (en) A kind of network scenario emulation background traffic generates and management method and device
CN105049277B (en) A kind of network flow generation method based on data flow characteristics
Kim et al. A highly-accurate and low-overhead prediction model for transfer throughput optimization
Vondrouš et al. Testing methodology for performance evaluation of communication systems for Smart Grid
CN109194545A (en) A kind of network test platform traffic generating system, method, apparatus and electronic equipment
CN109981387A (en) A kind of network flux statistical method
CN104935520B (en) A kind of network traffics generation method based on data packet feature
CN108156045B (en) A kind of software definition grouping conveying network SPTN test macro and method
TW202147810A (en) Virtual service network quality measurement system and method thereof
Chin et al. End-to-end delay minimization approaches using software-defined networking
CN104539470B (en) Test shunting device whether method, test client and the system of packet loss
CN105611406B (en) One kind access net service provider monitors user to video server lag characteristic method
CN105306307B (en) Automatic testing method for large-capacity rule table of packet filtering equipment
KR102040094B1 (en) Data construction apparatus and method for the generation of internet background traffic in the cyber training system

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant
CF01 Termination of patent right due to non-payment of annual fee

Granted publication date: 20181113

Termination date: 20190608

CF01 Termination of patent right due to non-payment of annual fee