A Hybrid Approach for Accurate BT Traffic Identification
In this paper, a hybrid approach for identifying the traffic running over BitTorrent (BT) protocol is proposed. Besides the conventional port-based and signature-based methods, another two BT-oriented methods dealing with the peer-information and flow-information of BT traffic are also adopted. The peer-information method makes use of the unencrypted peer-transfer mechanism of BT protocol, and the flow-information method focuses on identifying the encrypted traffic, which evades the above three methods, with low false-positive ratio. The preliminary evaluation shows that our hybrid approach is effective and comprehensive for BT traffic identification.
R. H. Zhang et al., "A Hybrid Approach for Accurate BT Traffic Identification", Advanced Materials Research, Vols. 108-111, pp. 279-284, 2010