ACM Home Page
Please provide us with feedback. Feedback
Digital Library logoTake a look at the new version of this page: [ beta version ]. Tell us what you think.
Enhanced Skype traffic identification
Full text PdfPdf (362 KB)
Source ValueTools; Vol. 321 archive
Proceedings of the 2nd international conference on Performance evaluation methodologies and tools table of contents
Nantes, France
SESSION: Traffic models and measurements table of contents
Article No.: 26  
Year of Publication: 2007
ISBN:978-963-9799-00-4
Authors
Marcell Perényi  Budapest University of Technology & Economics, Budapest, Hungary
Sándor Molnár  Budapest University of Technology & Economics, Budapest, Hungary
Sponsors
SIGSIM: ACM Special Interest Group on Simulation and Modeling
: Create-Net
SIGMETRICS: ACM Special Interest Group on Measurement and Evaluation
Publisher
Bibliometrics
Downloads (6 Weeks): 6,   Downloads (12 Months): 162,   Citation Count: 0
Additional Information:

abstract   references   index terms   collaborative colleagues  

Tools and Actions: Review this Article  

ABSTRACT

Skype applies strong encryption to provide secure communication inside the whole Skype network. The communication ports of clients are chosen randomly. As a consequence, traditional port based or payload based identification of Skype traffic cannot be applied. In this paper we present a novel flow dynamics based identification method to discover both Skype hosts and voice calls. The method is based only on packet headers and extracted flow level information. This method is the second algorithm from our research. It has a significant improvement over our first method [1]. It can detect the randomly selected communication port of the Skype client, which makes the identification more reliable. The whole identification process is scripted in Transact-SQL, thus it can be executed automatically. We also present the validation of the new algorithm together with the analysis of the identification results.


REFERENCES

Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.

 
1
M. Perényi, A. Gefferth, T. Dinh Dang, S. Molnár, "Skype Traffic Identification", accepted to GLOBECOM 2007 and based on the downloadable technical report: M. Perényi et al. Identification and Analysis of Skype Traffic, http://yossarian.tmit.bme.hu/download/techrep.doc
 
2
Fabrice Desclaux, "Skype uncovered -- Security study of Skype", EADS, 2005
 
3
S. Ehlert, S. Petgang, "Analysis and Signature of Skype VoIP Session Traffic", Technical Report NGNI-SKYPE-06b, Fraunhofer FOKUS, Berlin, Germany
 
4
W. Ghandour, "Blocking Skype Using Squid and OpenBSD", Help Net Security (www.net-security.org), 2005
 
5
K. Suh, D. R. Figueiredo, J. Kurose, D. Towsley, "Characterizing and Detecting Skype-Relayed Traffic", in Proc. of INFOCOM'06, Barcelona, Spain, 2006
 
6
S. Guha, N. Daswani, R. Jain, "An Experimental Study of the Skype Peer-to-Peer VoIP System", in Proc. of IPTPS'06, Santa Barbara, USA, 2006
7
 
8
Skype Technologies S. A., "Skype - Guide for Network Administrators Version 1.01", 2005, http://www.skype.com/security/guide-for-network-admins.pdf
 
9
P. Biondi, F. Desclaux, "Silver needle in the Skype", EADS, 2006
 
10
S. A. Baset, H. Schulzrinne, "An Analysis of the Skype Peer-to-Peer Internet Telephony Protocol", in Proc. of INFOCOM'06, Barcelona, Spain, 2006
 
11
B. W. Wah, B. Sat, M. Gannon, "Analysis and Evaluation of the Skype and Google-Talk VoIP Systems", Multimedia and Expo 2006, Toronto, Canada, 2006
 
12
T. Dinh Dang, M. Perényi, A. Gefferth, S. Molnár, "On the Identification and Analysis of P2P Traffic aggregation", in Proc. of Networking 2006, Coimbra, Portugal, 2006

Collaborative Colleagues:
Marcell Perényi: colleagues
Sándor Molnár: colleagues