Н. В. Кожемякина, Н. Н. Пономаренко


In this paper a problem of compressing data containing information on basic parameters of network traffic is considered. Twelve test sets with different types of network traffic for known monitoring tools Wireshark, Colasoft Capsa and CommView are formed. It is shown that the main part of memory in compressed data relates to timestamps. A method for compressing timestamps that consists in delta calculation, Burrows-Wheeler transform (BWT), distance coding (DC) and recursive group coding (RGC) at the final stage is proposed. It is demonstrated that the use of RGC at the final stage provides more efficient coding compared to known methods. It is also shown that the proposed method of timestamps coding produces about twice larger compression ratio than WinRar


data compression, traffic monitoring and analysis tools, BWT, distance coding


