Passive OS Fingerprinting Prototype Demonstration
The result's identifiers
Result code in IS VaVaI
<a href="https://www.isvavai.cz/riv?ss=detail&h=RIV%2F00216224%3A14610%2F18%3A00106884" target="_blank" >RIV/00216224:14610/18:00106884 - isvavai.cz</a>
Result on the web
<a href="https://ieeexplore.ieee.org/document/8406128" target="_blank" >https://ieeexplore.ieee.org/document/8406128</a>
DOI - Digital Object Identifier
<a href="http://dx.doi.org/10.1109/NOMS.2018.8406128" target="_blank" >10.1109/NOMS.2018.8406128</a>
Alternative languages
Result language
angličtina
Original language name
Passive OS Fingerprinting Prototype Demonstration
Original language description
Operating system identification of communicating devices plays an important part in network protection. However, current networks are large and change often which implies the need for a system that will be able to continuously monitor the network and handle changes in identified operating systems. In this paper, we propose an architecture of an OS fingerprinting system based on passive network monitoring and a graph-based data model to store and present information about operating systems in the network. We implemented the proposed architecture and tested it on the backbone network of Masaryk University. Our results suggest that it is suitable for monitoring a large network with tens of thousands of actively communicating devices.
Czech name
—
Czech description
—
Classification
Type
D - Article in proceedings
CEP classification
—
OECD FORD branch
10201 - Computer sciences, information science, bioinformathics (hardware development to be 2.2, social aspect to be 5.8)
Result continuities
Project
<a href="/en/project/VI20172020070" target="_blank" >VI20172020070: Research of Tools for Cyber Situational Awareness and Decision Support of CSIRT Teams in Protection of Critical Infrastructure</a><br>
Continuities
P - Projekt vyzkumu a vyvoje financovany z verejnych zdroju (s odkazem do CEP)
Others
Publication year
2018
Confidentiality
S - Úplné a pravdivé údaje o projektu nepodléhají ochraně podle zvláštních právních předpisů
Data specific for result type
Article name in the collection
NOMS 2018 - 2018 IEEE/IFIP Network Operations and Management Symposium
ISBN
9781538634165
ISSN
—
e-ISSN
—
Number of pages
2
Pages from-to
—
Publisher name
IEEE Xplore Digital Library
Place of publication
Taipei, Taiwan
Event location
Taipei, Taiwan
Event date
Jan 1, 2018
Type of event by nationality
WRD - Celosvětová akce
UT code for WoS article
000541820800016