Abstract:
|
We present Network Polygraph (https://polygraph.io), a network monitoring service based on NetFlow/IPFIX that benefits from more than 10 years of research in the fields of network monitoring and traffic classification at UPC BarcelonaTech. The main novelty of this tool is that it can be deployed as a service, either on premises or in the cloud, which makes it much easier and cheaper to deploy, while still obtaining classification accuracies similar to those tools based on DPI. Network Polygraph’s technology also solves the limitations of previous machine learning based algorithms proposed by the research community, by integrating an unique, fully-automatic retraining system that allows the system to retrain itself, without human intervention, when there is a change in the traffic characteristics or the tool is deployed in a new environment. Network Polygraph has been successfully deployed in several Research and Education Networks, including CSUC and RedIRIS, which allowed us to fine tune the tool for NRENs and add some features specifically tailored to them. |