Associating network flows with user and application information

R. Ackermann, U. Roedig, M. Zink, C. Griwodz, R. Steinmetz
{"title":"Associating network flows with user and application information","authors":"R. Ackermann, U. Roedig, M. Zink, C. Griwodz, R. Steinmetz","doi":"10.1145/357744.357914","DOIUrl":null,"url":null,"abstract":"The concept of authenticating users e.g. by means of a login process is very well established and there is no doubt that it is absolutely necessary and helpful in a multiuser environment. Unfortunately specific information about a user originating a data stream or receiving it, is often no longer available at the traversed network nodes. This applies to the even more specific question of what application is used as well. Routers, gateways or firewalls usually have to base their classification of data on IP header inspection or have to try to extract information from the packets payload.\nWe present an approach that works transparently and allows to associate user and application specific information with IP data streams by only slightly modifying components of the operating system environment and infrastructure components. On top of this framework we show usage scenarios for dedicatedly placing copyright information in media content and for an enhancement of the interoperation with the security infrastructure.","PeriodicalId":234597,"journal":{"name":"MULTIMEDIA '00","volume":"46 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2000-11-04","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"6","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"MULTIMEDIA '00","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1145/357744.357914","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 6

Abstract

The concept of authenticating users e.g. by means of a login process is very well established and there is no doubt that it is absolutely necessary and helpful in a multiuser environment. Unfortunately specific information about a user originating a data stream or receiving it, is often no longer available at the traversed network nodes. This applies to the even more specific question of what application is used as well. Routers, gateways or firewalls usually have to base their classification of data on IP header inspection or have to try to extract information from the packets payload. We present an approach that works transparently and allows to associate user and application specific information with IP data streams by only slightly modifying components of the operating system environment and infrastructure components. On top of this framework we show usage scenarios for dedicatedly placing copyright information in media content and for an enhancement of the interoperation with the security infrastructure.
关联网络流与用户和应用信息
通过登录过程对用户进行身份验证的概念已经非常成熟,毫无疑问,这在多用户环境中是绝对必要和有用的。不幸的是,关于发起数据流或接收数据流的用户的特定信息,在遍历的网络节点上通常不再可用。这也适用于更具体的问题,即使用什么应用程序。路由器、网关或防火墙通常必须根据IP报头检查对数据进行分类,或者必须尝试从数据包有效载荷中提取信息。我们提出了一种透明工作的方法,允许将特定于用户和应用程序的信息与IP数据流相关联,只需稍微修改操作系统环境和基础架构组件的组件。在此框架之上,我们展示了专门将版权信息放置在媒体内容中的使用场景,以及增强与安全基础设施的互操作。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信