2006
DOI: 10.1007/11807964_97
|View full text |Cite
|
Sign up to set email alerts
|

Security Enhancement by Detecting Network Address Translation Based on Instant Messaging

Abstract: Abstract. Detecting network address translation is helpful for network administrators to enhance the network security. Current network address translation detection approaches can not work effectively in all scenarios. In this paper, a new detection scheme ImNatDet utilizing instant messaging information is presented, a case study based on characters of MSN Messenger is analyzed, and related security issues are discussed. This paper also indicates that characters of instant messaging applications can be used t… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
3

Citation Types

0
3
0

Year Published

2011
2011
2016
2016

Publication Types

Select...
3
1

Relationship

0
4

Authors

Journals

citations
Cited by 4 publications
(3 citation statements)
references
References 11 publications
0
3
0
Order By: Relevance
“…Besides the above "low level" approaches, which only look at IP headers and TCP headers, there are also a few ideas which utilize deep packet inspection and thus operate on the application layer. For example, Zhao et al [15] and Bi et al [16] inspect the payload of packets which belong to connections of instant messaging clients. They argue that this is a suitable approach to host counting since most users run only one instance of an instant messaging client on each machine.…”
Section: Related Workmentioning
confidence: 99%
“…Besides the above "low level" approaches, which only look at IP headers and TCP headers, there are also a few ideas which utilize deep packet inspection and thus operate on the application layer. For example, Zhao et al [15] and Bi et al [16] inspect the payload of packets which belong to connections of instant messaging clients. They argue that this is a suitable approach to host counting since most users run only one instance of an instant messaging client on each machine.…”
Section: Related Workmentioning
confidence: 99%
“…For example, Bellovin [14] presents, a method relying on special packet header fields, like for example the IP ID or TCP window size. Moreover in [15] a method for detecting NAT based on instant messaging traffic of different active hosts is described. In addition, Kohno et al [16] present a method to detect NAT based on passively fingerprinting devices by detecting clock skews in physical devices.…”
Section: Related Workmentioning
confidence: 99%
“…In [12] authors make use of IP-ID fields to detect subscribers using NAT devices in wireless networks. Another methodology is described in the following papers [17], [3], [5] and [4], in which authors utilized application layer information to discover NAT devices. They assume that instant messaging is one of the most popular softwares so they make use of instant messaging network packets to detect a NAT device.…”
Section: Related Workmentioning
confidence: 99%