Sciweavers

SIGCOMM
2003
ACM

A high-level programming environment for packet trace anonymization and transformation

13 years 9 months ago
A high-level programming environment for packet trace anonymization and transformation
Packet traces of operational Internet traffic are invaluable to network research, but public sharing of such traces is severely limited by the need to first remove all sensitive information. Current trace anonymization technology leaves only the packet headers intact, completely stripping the contents; to our knowledge, there are no publicly available traces of any significant size that contain packet payloads. We describe a new approach to transform and anonymize packet traces. Our tool provides high-level language support for packet transformation, allowing the user to write short policy scripts to express sophisticated trace transformations. The resulting scripts can anonymize both packet headers and payloads, and can perform application-level transformations such as editing HTTP or SMTP headers, replacing the content of Web items with MD5 hashes, or altering filenames or reply codes that match given patterns. We discuss the critical issue of verifying that anonymizations are b...
Ruoming Pang, Vern Paxson
Added 05 Jul 2010
Updated 05 Jul 2010
Type Conference
Year 2003
Where SIGCOMM
Authors Ruoming Pang, Vern Paxson
Comments (0)