On the Multifractal Structure of Observed Internet Addresses

Presenter: Megan Walter – Computer and Information Science

Faculty Mentor(s): Reza Rejaie, Chris Misa

Session: (Virtual) Oral Panel—Inner Space and Internet

As a result of society’s increasing dependence on the internet, we observe an uptick in internet attacks and network management issues. However, the growing speed and volume of internet traffic makes finding portions of traffic responsible for creating problems difficult. Current approaches to classifying connections as harmful or benign tend to regard each connection independently of one another. However, the nature of IP addresses points to correlations between addresses located in similar parts of the IP address space. Understanding the structural characteristics of the IP address space could lead to novel ways to create network management algorithms that deal with aggregates of flows.

We examine the structure of observed IP addresses in network traffic collected from border routers at the University of Oregon. Previous work indicates that the characteristics of observed IPv4 address structures are consistent with a multifractal model. We work to solidify the existence of this multifractal structure and provide an initial contribution to the development of network security and management solutions that aggregate flows by IP address. We use a brand new method of multifractal analysis using the method of moments to produce an initial characterization of how observed IPv4 addresses relate to one another. We applied this process across traffic samples representing three different timescales, allowing us to look at the temporal dynamics of these multifractal characteristics.

Leave a Reply

Your email address will not be published. Required fields are marked *