Research Article
Packet-Based Intrusion Detection Using Bayesian Topic Models in Mobile Edge Computing
| Packet layer | Features extracted |
| Ethernet layer | Higher 3 bytes of MAC source (ESRC), higher 3 bytes of MAC destination (EDST) | IP layer | IP length (IL), type of service (TOS), fragment flags (FF), time to live (TTL), IP source (SRC), IP destination (DST) | Transport/control layer | TCP flag (TF), TCP checksum (TC), TCP URG pointer (TU), TCP option (TO), UDP checksum (UC), ICMP checksum (IC), Service port (SP) | Others | Packet size (PS) |
|
|