NeTS:Medium:Invigorating Empirical Network Research via Mediated Trace Analysis

NeTS:Medium:通过中介跟踪分析激发实证网络研究

基本信息

  • 批准号:
    0905631
  • 负责人:
  • 金额:
    $ 80万
  • 依托单位:
  • 依托单位国家:
    美国
  • 项目类别:
    Standard Grant
  • 财政年份:
    2009
  • 资助国家:
    美国
  • 起止时间:
    2009-09-01 至 2012-08-31
  • 项目状态:
    已结题

项目摘要

Scientific network research relies heavily on sound, empirical analysis of real-world network traffic. It is often not possible to robustly validate a proposed mechanism, enhancement, or new service without understanding how it will interact with real networks and real users. Yet obtaining the necessary raw measurement data?in particular packet traces including payload?can prove exceedingly difficult. Simply put, the lack of public access to current, representative datasets significantly hinders the progress of our scientific field. Not having appropriate traces for a study can stall the most promising research. There have been extensive efforts by the community at large to change the status quo by providing collections of public network traces. However, the community?s major push to encourage institutions to release anonymized data has achieved only very limited successes. The risks involved with any release still outweigh the potential benefits in almost all environments. The lack of significant progress in this direction?despite extensive efforts?is an undeniable indication that the community needs a new approach. Towards this end, the PIs are developing in a systematic fashion a scheme that has been used informally numerous times over two decades of network research: rather than bringing the data to the experimenter, bring the experiment to the data. Past studie have packaged up an analysis for execution by somebody external who had the privileges to access network traffic out of our reach. These people crunched the traffic with our scripts and then manually verified that the output did not leak any sensitive information before passing it on to us. The PIs are establishing such mediated trace analysis as a standard approach to empirical network research. The aim is to formalize the process sufficiently to facilitate researchers tapping into a potentially broad pool of providers willing to mediate access to traces for research studies. Several large-scale network environments have already confirmed to us that they consider this model a feasible approach, and are willing to participate. The main challenge to overcome is the burden the process imposes on trace providers and on the research ?development cycle?. The basic tenet is that it possible to greatly improve many of the tedious mediation steps by devising a systematic framework that accounts for the legitimate concerns of providers while reducing their effort to such a degree that it becomes practical for them to provide mediated trace analysis on a routine basis. The key challenge is to automate the common steps of the mediation process without compromising the core requirement of the trace provider maintaining thorough control over the process. Starting with carefully examining the threats that arise, the PIs are devising a formal framework for trace mediations that will include a computational model specifically tailored to the process? unique requirements, along with a powerful suite of tools to provide extensive support for the different elements of the undertaking.The mediation approach has the potential to broadly improve how scientists tackle network measurement studies?both opening up access to a far greater range of empirical data than is currently viable, and instilling a greater degree of scientific rigor into the process of conducting such research. By making empirical data available to many more teams of researchers than occurs today, this work will significantly broaden efforts within the field.
科学的网络研究在很大程度上依赖于对现实世界网络流量的可靠的实证分析。在不了解所提出的机制、增强或新服务将如何与真实的网络和真实的用户交互的情况下,通常不可能稳健地验证所提出的机制、增强或新服务。然而,获得必要的原始测量数据?特别是包括有效载荷的分组跟踪?会非常困难简而言之,缺乏公众对当前代表性数据集的访问,严重阻碍了我们科学领域的进步。没有适当的研究痕迹可能会阻碍最有前途的研究。整个社区已经做出了广泛的努力,通过提供公共网络痕迹的集合来改变现状。然而,社区?美国政府鼓励机构发布匿名数据的主要努力只取得了非常有限的成功。在几乎所有的环境中,任何版本所涉及的风险仍然超过了潜在的好处。在这方面缺乏重大进展?尽管付出了巨大的努力?无可否认,这表明社会需要一种新的做法。为此,PI正在以系统的方式开发一种在20年的网络研究中已被非正式地使用过无数次的方案:不是将数据带给实验者,而是将实验带到数据中。过去的研究已经打包了一个分析,由外部某个有权访问我们无法访问的网络流量的人执行。这些人用我们的脚本处理流量,然后手动验证输出在传递给我们之前没有泄露任何敏感信息。PI正在建立这种中介痕迹分析作为经验网络研究的标准方法。其目的是使这一过程充分正规化,以方便研究人员利用愿意为研究提供痕迹的潜在广泛的供应商。几个大规模的网络环境已经向我们证实,他们认为这种模式是可行的,并愿意参与。要克服的主要挑战是这个过程给追踪提供者和研究带来的负担。发展周期?基本原则是,通过设计一个系统框架,可以大大改善许多繁琐的调解步骤,该框架考虑到提供者的合理关切,同时减少他们的努力,使他们能够在常规基础上提供调解跟踪分析。关键的挑战是在不影响跟踪提供者维护对过程的全面控制的核心需求的情况下,自动化中介过程的公共步骤。从仔细检查出现的威胁开始,PI正在为跟踪中介设计一个正式的框架,其中将包括一个专门为该过程量身定制的计算模型。独特的要求,沿着一套强大的工具,为不同的任务要素提供广泛的支持。中介方法有可能广泛地改善科学家如何处理网络测量研究?这两方面都使人们能够获得比目前可行的范围更广的经验数据,并使进行这种研究的过程具有更高的科学严谨性。通过向比今天更多的研究团队提供经验数据,这项工作将大大拓宽该领域的努力。

项目成果

期刊论文数量(0)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ monograph.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ sciAawards.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ conferencePapers.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ patent.updateTime }}

Robin Sommer其他文献

Principles for Developing Comprehensive Network Visibility
发展全面网络可见性的原则
  • DOI:
  • 发表时间:
    2008
  • 期刊:
  • 影响因子:
    0
  • 作者:
    M. Allman;C. Kreibich;V. Paxson;Robin Sommer;N. Weaver
  • 通讯作者:
    N. Weaver
Recent Advances in Intrusion Detection, 13th International Symposium, RAID 2010, Ottawa, Ontario, Canada, September 15-17, 2010. Proceedings
入侵检测最新进展,第 13 届国际研讨会,RAID 2010,加拿大安大略省渥太华,2010 年 9 月 15-17 日。会议记录
Chapter 7 Content-based Privacy for Consumer-Produced Multimedia
第 7 章 消费者制作的多媒体的基于内容的隐私
  • DOI:
  • 发表时间:
    2014
  • 期刊:
  • 影响因子:
    0
  • 作者:
    G. Friedland;Adam L. Janin;Howard Lei;Jaeyoung Choi;Robin Sommer
  • 通讯作者:
    Robin Sommer
Count Me In: Viable Distributed Summary Statistics for Securing High-Speed Networks
算我一个:用于保护高速网络的可行的分布式摘要统计
Viable network intrusion detection in high-performance environments
  • DOI:
  • 发表时间:
    2005
  • 期刊:
  • 影响因子:
    0
  • 作者:
    Robin Sommer
  • 通讯作者:
    Robin Sommer

Robin Sommer的其他文献

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

{{ truncateString('Robin Sommer', 18)}}的其他基金

TWC: Option: Medium: Collaborative: Semantic Security Monitoring for Industrial Control Systems
TWC:选项:中:协作:工业控制系统的语义安全监控
  • 批准号:
    1314973
  • 财政年份:
    2013
  • 资助金额:
    $ 80万
  • 项目类别:
    Standard Grant
TWC: Phase: Medium: Collaborative Proposal: Understanding and Exploiting Parallelism in Deep Packet Inspection on Concurrent Architectures
TWC:阶段:中:协作提案:理解和利用并发架构深度数据包检查中的并行性
  • 批准号:
    1228792
  • 财政年份:
    2012
  • 资助金额:
    $ 80万
  • 项目类别:
    Standard Grant
TC: Medium: Understanding and Managing the Impact of Global Inference on Online Privacy
TC:媒介:理解和管理全局推理对在线隐私的影响
  • 批准号:
    1065240
  • 财政年份:
    2011
  • 资助金额:
    $ 80万
  • 项目类别:
    Standard Grant
SDCI Sec Improvement: Enhancing Bro for Operational Network Security Monitoring in Scientific Environments
SDCI Sec 改进:增强 Bro 在科学环境中进行运营网络安全监控
  • 批准号:
    1032889
  • 财政年份:
    2010
  • 资助金额:
    $ 80万
  • 项目类别:
    Standard Grant
TC: Small: A High-Performance Abstract Machine for Network Intrusion Detection
TC:Small:用于网络入侵检测的高性能抽象机
  • 批准号:
    0915667
  • 财政年份:
    2009
  • 资助金额:
    $ 80万
  • 项目类别:
    Standard Grant
II-EN: High-Performance Network Monitoring Infrastructure For Research in a Large-Scale Operational Environment
II-EN:用于大规模运营环境研究的高性能网络监控基础设施
  • 批准号:
    0855125
  • 财政年份:
    2009
  • 资助金额:
    $ 80万
  • 项目类别:
    Standard Grant

相似海外基金

Collaborative Research: CyberTraining: Implementation: Medium: Training Users, Developers, and Instructors at the Chemistry/Physics/Materials Science Interface
协作研究:网络培训:实施:媒介:在化学/物理/材料科学界面培训用户、开发人员和讲师
  • 批准号:
    2321102
  • 财政年份:
    2024
  • 资助金额:
    $ 80万
  • 项目类别:
    Standard Grant
RII Track-4:@NASA: Bluer and Hotter: From Ultraviolet to X-ray Diagnostics of the Circumgalactic Medium
RII Track-4:@NASA:更蓝更热:从紫外到 X 射线对环绕银河系介质的诊断
  • 批准号:
    2327438
  • 财政年份:
    2024
  • 资助金额:
    $ 80万
  • 项目类别:
    Standard Grant
Collaborative Research: Topological Defects and Dynamic Motion of Symmetry-breaking Tadpole Particles in Liquid Crystal Medium
合作研究:液晶介质中对称破缺蝌蚪粒子的拓扑缺陷与动态运动
  • 批准号:
    2344489
  • 财政年份:
    2024
  • 资助金额:
    $ 80万
  • 项目类别:
    Standard Grant
Collaborative Research: AF: Medium: The Communication Cost of Distributed Computation
合作研究:AF:媒介:分布式计算的通信成本
  • 批准号:
    2402836
  • 财政年份:
    2024
  • 资助金额:
    $ 80万
  • 项目类别:
    Continuing Grant
Collaborative Research: AF: Medium: Foundations of Oblivious Reconfigurable Networks
合作研究:AF:媒介:遗忘可重构网络的基础
  • 批准号:
    2402851
  • 财政年份:
    2024
  • 资助金额:
    $ 80万
  • 项目类别:
    Continuing Grant
Collaborative Research: CIF: Medium: Snapshot Computational Imaging with Metaoptics
合作研究:CIF:Medium:Metaoptics 快照计算成像
  • 批准号:
    2403122
  • 财政年份:
    2024
  • 资助金额:
    $ 80万
  • 项目类别:
    Standard Grant
Collaborative Research: SHF: Medium: Differentiable Hardware Synthesis
合作研究:SHF:媒介:可微分硬件合成
  • 批准号:
    2403134
  • 财政年份:
    2024
  • 资助金额:
    $ 80万
  • 项目类别:
    Standard Grant
Collaborative Research: SHF: Medium: Enabling Graphics Processing Unit Performance Simulation for Large-Scale Workloads with Lightweight Simulation Methods
合作研究:SHF:中:通过轻量级仿真方法实现大规模工作负载的图形处理单元性能仿真
  • 批准号:
    2402804
  • 财政年份:
    2024
  • 资助金额:
    $ 80万
  • 项目类别:
    Standard Grant
Collaborative Research: CIF-Medium: Privacy-preserving Machine Learning on Graphs
合作研究:CIF-Medium:图上的隐私保护机器学习
  • 批准号:
    2402815
  • 财政年份:
    2024
  • 资助金额:
    $ 80万
  • 项目类别:
    Standard Grant
Collaborative Research: SHF: Medium: Tiny Chiplets for Big AI: A Reconfigurable-On-Package System
合作研究:SHF:中:用于大人工智能的微型芯片:可重新配置的封装系统
  • 批准号:
    2403408
  • 财政年份:
    2024
  • 资助金额:
    $ 80万
  • 项目类别:
    Standard Grant
{{ showInfoDetail.title }}

作者:{{ showInfoDetail.author }}

知道了