Network Forensics in GSE Overlay Networks
The result's identifiers
Result code in IS VaVaI
<a href="https://www.isvavai.cz/riv?ss=detail&h=RIV%2F00216305%3A26230%2F19%3APU134949" target="_blank" >RIV/00216305:26230/19:PU134949 - isvavai.cz</a>
Result on the web
<a href="http://doi.acm.org/10.1145/3352700.3352712" target="_blank" >http://doi.acm.org/10.1145/3352700.3352712</a>
DOI - Digital Object Identifier
<a href="http://dx.doi.org/10.1145/3352700.3352712" target="_blank" >10.1145/3352700.3352712</a>
Alternative languages
Result language
angličtina
Original language name
Network Forensics in GSE Overlay Networks
Original language description
Captured network traffic increased on its importance as a data-source for law enforcement crime investigation because everything is becoming internet connected and a suspect's phone or computer communication might yield crucial evidence. There are many points in the Internet Service Provider's infrastructure where the network traffic might be captured. One of them is satellite connection, DVB-S2, which use Generic Stream Encapsulation (GSE) to carry IP traffic. Current tools for network traffic forensic analysis do not support GSE. In this paper, we describe GSE and how we implemented support for GSE into Netfox Detective.
Czech name
—
Czech description
—
Classification
Type
D - Article in proceedings
CEP classification
—
OECD FORD branch
10201 - Computer sciences, information science, bioinformathics (hardware development to be 2.2, social aspect to be 5.8)
Result continuities
Project
<a href="/en/project/VI20172020062" target="_blank" >VI20172020062: Integrated platform for analysis of digital data from security incidents</a><br>
Continuities
S - Specificky vyzkum na vysokych skolach
Others
Publication year
2019
Confidentiality
S - Úplné a pravdivé údaje o projektu nepodléhají ochraně podle zvláštních právních předpisů
Data specific for result type
Article name in the collection
Proceedings of the 6th Conference on the Engineering of Computer Based Systems (ECBS 2019), 2019
ISBN
978-1-4503-7636-5
ISSN
—
e-ISSN
—
Number of pages
10
Pages from-to
1-10
Publisher name
Association for Computing Machinery
Place of publication
Bukurešť
Event location
Bucharest
Event date
Sep 2, 2019
Type of event by nationality
WRD - Celosvětová akce
UT code for WoS article
000525376600012