首页    期刊浏览 2024年11月28日 星期四
登录注册

文章基本信息

  • 标题:Practical evaluation of encrypted traffic classification based on a combined method of entropy estimation and neural networks
  • 本地全文:下载
  • 作者:Kun Zhou ; Wenyong Wang ; Chenhuang Wu
  • 期刊名称:ETRI Journal
  • 印刷版ISSN:1225-6463
  • 电子版ISSN:2233-7326
  • 出版年度:2020
  • 卷号:42
  • 期号:3
  • 页码:311-323
  • DOI:10.4218/etrij.2019-0190
  • 语种:English
  • 出版社:Electronics and Telecommunications Research Institute
  • 摘要:Encrypted traffic classification plays a vital role in cybersecurity as network traffic encryption becomes prevalent. First, we briefly introduce three traffic encryption mechanisms: IPsec, SSL/TLS, and SRTP. After evaluating the performances of support vector machine, random forest, naïve Bayes, and logistic regression for traffic classification, we propose the combined approach of entropy estimation and artificial neural networks. First, network traffic is classified as encrypted or plaintext with entropy estimation. Encrypted traffic is then further classified using neural networks. We propose using traffic packet’s sizes, packet's inter‐arrival time, and direction as the neural network's input. Our combined approach was evaluated with the dataset obtained from the Canadian Institute for Cybersecurity. Results show an improved precision (from 1 to 7 percentage points), and some application classification metrics improved nearly by 30 percentage points.
国家哲学社会科学文献中心版权所有