VLDB 2026 Research / reviewers in the wild / expert
Tongqing Qiu
dblp:68/468
· DBLP profile ↗
13ranked-venue papers
11as first author
0since 2021 · last 2014
—ORCID · none
Domains — the database's venue-derived domains; a paper can count in several
Computer networks · 7 · 7 first-authorSystems, architecture and hardware · 5 · 3 first-authorSecurity and privacy · 1 · 1 first-author
Expertise — from the expertise taxonomy: the topics of the expert's papers under the CCF categories. A weight counts papers with recency: 1 for a paper about the topic, 0.3 when the topic is its context, halved every five years.
| Computer networks
6 papers |
Network measurement and analytics · 53% Network management and operations · 34% Routing and switching · 9% | |
| Network and information security
2 papers |
Network security · 100% |
Topics — the 11 heaviest of 14, each with the papers that count most for it
| Topic | Weight | Papers | Last | Evidence papers |
|---|---|---|---|---|
Network security
routing security |
0.2 | 2 | 2010 | TowerDefense: Deployment strategies for battling against IP prefix hijacking · ICNP 2010 Locating Prefix Hijackers using LOCK · USENIX Security Symposium 2009 |
Network management and operations › fault management
fault diagnosis |
0.1 | 1 | 2010 | What happened in my network: mining network events from router syslogs · Internet Measurement Conference 2010 |
Network security › intrusion detection and prevention
intrusion detection |
0.1 | 1 | 2010 | TowerDefense: Deployment strategies for battling against IP prefix hijacking · ICNP 2010 |
Network security › routing security
prefix hijacking |
0.1 | 1 | 2010 | TowerDefense: Deployment strategies for battling against IP prefix hijacking · ICNP 2010 |
Network measurement and analytics
workload characterization |
0.1 | 1 | 2009 | Modeling user activities in a large IPTV system · Internet Measurement Conference 2009 |
Network security › routing security
prefix hijacking detection |
0.1 | 1 | 2009 | Locating Prefix Hijackers using LOCK · USENIX Security Symposium 2009 |
Network measurement and analytics
passive measurement |
0.1 | 1 | 2008 | Packet doppler: network monitoring using packet shift detection · CoNEXT 2008 |
Network management and operations › network monitoring › performance monitoring
service level agreement monitoring |
0.1 | 1 | 2008 | Packet doppler: network monitoring using packet shift detection · CoNEXT 2008 |
Network measurement and analytics
network event detection |
0.0 | 1 | 2010 | What happened in my network: mining network events from router syslogs · Internet Measurement Conference 2010 |
Routing and switching › inter-domain routing
BGP |
0.0 | 1 | 2009 | Locating Prefix Hijackers using LOCK · USENIX Security Symposium 2009 |
Routing and switching
inter-domain routing |
0.0 | 1 | 2009 | Locating Prefix Hijackers using LOCK · USENIX Security Symposium 2009 |
Methods — techniques the papers use, named apart from their topics
agent location selection algorithms · 0.2text mining · 0.1social media mining · 0.1log compression · 0.1data mining · 0.1correlation analysis · 0.1workload generation · 0.1trace analysis · 0.1statistical modeling · 0.1passive measurement · 0.1
| Year | Publication | Venue | Position |
|---|---|---|---|
| 2014 | NetSearch: Googling large-scale network management dataabstractIn order to ensure the service quality, modern Internet Service Providers (ISPs) invest tremendously on their network monitoring and measurement infrastructure. Vast amount of network data, including device logs, alarms, and active/passive performance measurement across different network protocols and layers, are collected and stored for analysis. As network measurement grows in scale and sophistication, it becomes increasingly challenging to effectively “search” for the relevant information that best support the needs of network operations. In this paper, we look into techniques that have been widely applied in the information retrieval and search engine domain and explore their applicability in network management domain. We observe that unlike the textural information on the Internet, network data are typically annotated with time and location information, which can be further augmented using information based on network topology, protocol and service dependency. We design NetSearch, a system that pre-processes various network data sources on data ingestion, constructs index that matches both the network spatial hierarchy model and the inherent timing/textual information contained in the data, and efficiently retrieves the relevant information that network operators search for. Through case study, we demonstrate that NetSearch is an important capability for many critical network management functions such as complex impact analysis. Tongqing Qiu, Zihui Ge, Dan Pei, Jia Wang 0001, Jun (Jim) Xu |
Networking | 1 |
| 2010 | TowerDefense: Deployment strategies for battling against IP prefix hijackingabstractIP prefix hijacking is one of the top security threats targeting today's Internet routing protocol. Several schemes have been proposed to either detect or mitigate prefix hijacking events. However, none of these approaches is adopted and deployed on a large-scale on the Internet for reasons such as scalability, economical practicality, or unrealistic assumptions about the collaborations among ISPs. Thus there are no actionable and deployable solutions for dealing with prefix hijacking. In this paper, we study key issues related to deploying and operating an IP prefix hijacking detection and mitigation system. Our contributions include (i) deployment strategies for hijacking detection and mitigation system (named as TowerDefense): a practical service model for prefix hijacking protection and effective algorithms for selecting agent locations for detecting and mitigating prefix hijacking attacks; and (ii) large scale experiments on PlanetLab and extensive analysis on the performance of TowerDefense. Tongqing Qiu, Lusheng Ji, Dan Pei, Jia Wang 0001, Jun (Jim) Xu |
ICNP | 1 |
| 2010 | Listen to me if you can: tracking user experience of mobile network on social mediaabstractSocial media sites such as Twitter continue to grow at a fast pace. People of all generations use social media to exchange messages and share experiences of their life in a timely fashion. Most of these sites make their data available. An intriguing question is can we exploit this real-time and massive data-flow to improve business in a measurable way. In this paper, we are particularly interested in tweets (Twitter messages) that are relevant to mobile network performance. We compare tweets with a more traditional source of user experience, i.e., customer care tickets, and correlate both of them with a list of major network incidents. From our study, we have the following observations. First, Twitter users and users who call customer service tend to report different types of performance issues. Second, we observe that tweets typically appear more rapidly in response to network problems than customer tickets. They also appear to respond to a wider range of network issues. Third, significant spikes in the number of tweets appear to indicate short term performance impairments which are not reported in our current list of major network incidents. These observations together indicate that Twitter is an attractive, complementary source for monitoring service performance and its impact on user experience. Tongqing Qiu, Junlan Feng, Zihui Ge, Jia Wang 0001, Jun (Jim) Xu, Jennifer Yates |
Internet Measurement Conference | 1 |
| 2010 | What happened in my network: mining network events from router syslogsabstractRouter syslogs are messages that a router logs to describe a wide range of events observed by it. They are considered one of the most valuable data sources for monitoring network health and for trou- bleshooting network faults and performance anomalies. However, router syslog messages are essentially free-form text with only a minimal structure, and their formats vary among different vendors and router OSes. Furthermore, since router syslogs are aimed for tracking and debugging router software/hardware problems, they are often too low-level from network service management perspectives. Due to their sheer volume (e.g., millions per day in a large ISP network), detailed router syslog messages are typically examined only when required by an on-going troubleshooting investigation or when given a narrow time range and a specific router under suspicion. Automated systems based on router syslogs on the other hand tend to focus on a subset of the mission critical messages (e.g., relating to network fault) to avoid dealing with the full diversity and complexity of syslog messages. In this project, we design a Sys-logDigest system that can automatically transform and compress such low-level minimally-structured syslog messages into meaningful and prioritized high-level network events, using powerful data mining techniques tailored to our problem domain. These events are three orders of magnitude fewer in number and have much better usability than raw syslog messages. We demonstrate that they provide critical input to network troubleshooting, and net- work health monitoring and visualization. Tongqing Qiu, Zihui Ge, Dan Pei, Jia Wang 0001, Jun (Jim) Xu |
Internet Measurement Conference | 1 |
| 2009 | Modeling user activities in a large IPTV systemabstractInternet Protocol Television (IPTV) has emerged as a new delivery method for TV. In contrast with native broadcast in traditional cable and satellite TV system, video streams in IPTV are encoded in IP packets and distributed using IP unicast and multicast. This new architecture has been strategically embraced by ISPs across the globe, recognizing the opportunity for new services and its potential toward a more interactive style of TV watching experience in the future. Since user activities such as channel switches in IPTV impose workload beyond local TV or set-top box (different from broadcast TV systems), it becomes essential to characterize and model the aggregate user activities in an IPTV network to support various system design and performance evaluation functions such as network capacity planning. In this work, we perform an in-depth study on several intrinsic characteristics of IPTV user activities by analyzing the real data collected from an operational nation-wide IPTV system. We further generalize the findings and develop a series of models for capturing both the probability distribution and time-dynamics of user activities. We then combine theses models to design an IPTV user activity workload generation tool called SIMUL WATCH, which takes a small number of input parameters and generates synthetic workload traces that mimic a set of real users watching IPTV. We validate all the models and the prototype of SIMUL WATCH using the real traces. In particular, we show that SIMUL WATCH can estimate the unicast and multicast traffic accurately, proving itself as a useful tool in driving the performance study in IPTV systems. Tongqing Qiu, Zihui Ge, Seungjoon Lee, Jia Wang 0001, Jun (Jim) Xu, Qi Zhao 0006 |
Internet Measurement Conference | 1 |
| 2009 | Locating Prefix Hijackers using LOCK
Tongqing Qiu, Lusheng Ji, Dan Pei, Jia Wang 0001, Jun (Jim) Xu, Hitesh Ballani |
USENIX Security Symposium | 1 |
| 2009 | Peer-exchange schemes to handle mismatch in peer-to-peer systems
Tongqing Qiu, Edward Chan, Mao Ye 0010, Guihai Chen, Ben Y. Zhao |
J. Supercomput. | 1 |
| 2008 | Packet doppler: network monitoring using packet shift detectionabstractDue to recent large-scale deployments of delay and loss-sensitive applications, there are increasingly stringent demands on the monitoring of service level agreement metrics. Although many end-to-end monitoring methods have been proposed, they are mainly based on active probing and thus inject measurement traffic into the network. In this paper, we propose a new scheme for monitoring service level agreement metrics, in particular, delay distribution. Our scheme is passive and therefore will not cause perturbation to real traffic. Using realistic delay and traffic demands, we show that our scheme achieves high accuracy and can detect burst events that will be missed by probing based methods. Tongqing Qiu, Jian Ni, Hao Wang 0010, Nan Hua, Yang Richard Yang, Jun (Jim) Xu |
CoNEXT | 1 |
| 2008 | Insight into redundancy schemes in DHTs
Guihai Chen, Tongqing Qiu, Fan Wu 0006 |
J. Supercomput. | 2 |
| 2007 | Overlay Partition: Iterative Detection and Proactive RecoveryabstractOverlay networks provide infrastructures for a large variety of Internet applications, like file sharing, online gaming, and multimedia streaming. However, these networks often face unexpected node failures and network disconnections, causing the overlay to be partitioned into several components, which may seriously affect the performance of the network. In this paper, we analyze the cause of overplay partitions and its impact on the efficiency of the system. After explaining the notion ofhalf-life, a measurement used to describe the evolution of peers in overlay network, we propose a new construct calledhalf-successas a measure of critical partition. Furthermore, we propose an iterative method for the detection of potential partitions and a proactive strategy for the prevention of such partitions. Simulation experiments show that our detection method can efficiently find almost all of the cut vertices at a low cost. In addition, we demonstrate that the proposed proactive scheme is more effective and much faster than reactive approaches. Tongqing Qiu, Edward Chan, Guihai Chen |
ICC | 1 |
| 2007 | Towards Location-aware Topology in both Unstructured and Structured P2P SystemsabstractA self-organizing peer-to-peer system is built upon an application level overlay, whose topology is independent of underlying physical network. A well-routed message path in such systems may result in a long delay and excessive traffic due to the mismatch between logical and physical networks. In order to solve this problem, we present a family of Peer-exchange Routing Optimization Protocols (PROP) to reconstruct the overlay. It includes two policies: PROP- G for generic condition and PROP-0 for optimized one. Both theoretical analysis and simulation experiments show that these two protocols greatly reduce the average latency of the overlay and achieve a location-aware topology with low overhead. Their overall performance can be further improved if combined with other recent approaches. Specifically, PROP-G can be easily applied to both structured and unstructured systems without the loss of their primary characteristics, such as efficient routing and anonymity. PROP- O, on the other hand, is more efficient, especially in a heterogeneous environment where nodes have different processing capabilities. Tongqing Qiu, Guihai Chen, Mao Ye 0010, Edward Chan, Ben Y. Zhao |
ICPP | 1 |
| 2005 | A Generic Approach to Make Structured Peer-to-Peer Systems Topology-Aware
Tongqing Qiu, Fan Wu 0006, Guihai Chen |
ISPA | 1 |
| 2005 | Redundancy Schemes for High Availability in DHTs
Fan Wu 0006, Tongqing Qiu, YueQuan Chen, Guihai Chen |
ISPA | 2 |