Research Article

Packet-Based Intrusion Detection Using Bayesian Topic Models in Mobile Edge Computing

Table 3

Feature list.

Packet layerFeatures extracted

Ethernet layerHigher 3 bytes of MAC source (ESRC),
higher 3 bytes of MAC destination (EDST)
IP layerIP length (IL), type of service (TOS), fragment flags (FF),
time to live (TTL), IP source (SRC), IP destination (DST)
Transport/control layerTCP flag (TF), TCP checksum (TC), TCP URG pointer (TU),
TCP option (TO), UDP checksum (UC), ICMP checksum (IC),
Service port (SP)
OthersPacket size (PS)