首页 | 官方网站   微博 | 高级检索  
     

一种基于随机森林算法的MQTT异常流量检测方法
引用本文:吴克河,张英,崔文超,程瑞.一种基于随机森林算法的MQTT异常流量检测方法[J].计算机与现代化,2021,0(1):61-64.
作者姓名:吴克河  张英  崔文超  程瑞
作者单位:华北电力大学控制与计算机工程学院,北京 102206;华北电力大学控制与计算机工程学院,北京 102206;华北电力大学控制与计算机工程学院,北京 102206;华北电力大学控制与计算机工程学院,北京 102206
摘    要:工业物联网系统所面临的网络安全威胁随着物联网技术的广泛应用日益增加,信息安全问题已成为其发展过程中的一大挑战。MQTT(Message Queuing Telemetry Transport)协议是物联网通信的主流协议,基于该协议的物联网通信安全研究是当前研究的热点话题。传统的流量识别技术如深度包检测无法有效地识别符合包格式的异常流量,而基于机器学习理论的异常流量识别技术则表现出很好的效果。对此提出一种基于随机森林算法的MQTT异常流量检测方法,实现整体高于90%的MQTT异常流量识别准确度,与其他常用分类模型相比拥有更好的识别效果。

关 键 词:异常流量检测  随机森林  MQTT  流量特征  
收稿时间:2021-01-29

A MQTT Abnormal Traffic Detection Method Based on Random Forest Algorithm
WU Ke-he,ZHANG Ying,CUI Wen-chao,CHENG Rui.A MQTT Abnormal Traffic Detection Method Based on Random Forest Algorithm[J].Computer and Modernization,2021,0(1):61-64.
Authors:WU Ke-he  ZHANG Ying  CUI Wen-chao  CHENG Rui
Abstract:With the wide application of Internet of things technology, the industrial Internet of things system suffers from increasing network security threats, and information security becomes a major challenge in its development. The MQTT (Message Queuing Telemetry Transport) protocol is the mainstream protocol for Internet of things communication. The research on communication security of Internet of things based on the protocol is a hot topic at present. In order to ensure the communication security of restricted devices in the Internet of things, this paper focuses on the abnormal detection of MQTT traffic. Traditional traffic identification technology such as deep packet inspection cant effectively identify abnormal traffic conforming to packet format, and abnormal traffic identification technology based on machine learning theory shows very good effect. For this, a MQTT abnormal traffic detection method based on random forest algorithm is proposed, which achieves an overall accuracy of more than 90% and gets better recognition effect than other common classification models.
Keywords:abnormal traffic detection  random forests  MQTT  flow features  
本文献已被 万方数据 等数据库收录!
点击此处可从《计算机与现代化》浏览原始摘要信息
点击此处可从《计算机与现代化》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司    京ICP备09084417号-23

京公网安备 11010802026262号