Detection of DoH Traffic Tunnels Using Deep Learning for Encrypted Traffic Classification

被引:4
|
作者
Alzighaibi, Ahmad Reda [1 ]
机构
[1] Taibah Univ, Coll Comp Sci & Engn, Yanbu 42353, Saudi Arabia
关键词
DNS over HTTPS (DoH); CIRA-CIC-DoHBrw-2020; deep Learning; encrypted traffic classification;
D O I
10.3390/computers12030047
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Currently, the primary concerns on the Internet are security and privacy, particularly in encrypted communications to prevent snooping and modification of Domain Name System (DNS) data by hackers who may attack using the HTTP protocol to gain illegal access to the information. DNS over HTTPS (DoH) is the new protocol that has made remarkable progress in encrypting Domain Name System traffic to prevent modifying DNS traffic and spying. To alleviate these challenges, this study explored the detection of DoH traffic tunnels of encrypted traffic, with the aim to determine the gained information through the use of HTTP. To implement the proposed work, state-of-the-art machine learning algorithms were used including Random Forest (RF), Gaussian Naive Bayes (GNB), Logistic Regression (LR), k-Nearest Neighbor (KNN), the Support Vector Classifier (SVC), Linear Discriminant Analysis (LDA), Decision Tree (DT), Adaboost, Gradient Boost (SGD), and LSTM neural networks. Moreover, ensemble models consisting of multiple base classifiers were utilized to carry out a series of experiments and conduct a comparative study. The CIRA-CIC-DoHBrw2020 dataset was used for experimentation. The experimental findings showed that the detection accuracy of the stacking model for binary classification was 99.99%. In the multiclass classification, the gradient boosting model scored maximum values of 90.71%, 90.71%, 90.87%, and 91.18% in Accuracy, Recall, Precision, and AUC. Moreover, the micro average ROC curve for the LSTM model scored 98%.
引用
收藏
页数:17
相关论文
共 50 条
  • [21] Time Series Analysis for Encrypted Traffic Classification: A Deep Learning Approach
    Vu, Ly
    Thuy, Hoang V.
    Quang Uy Nguyen
    Ngoc, Tran N.
    Nguyen, Diep N.
    Dinh Thai Hoang
    Dutkiewicz, Eryk
    [J]. 2018 18TH INTERNATIONAL SYMPOSIUM ON COMMUNICATIONS AND INFORMATION TECHNOLOGIES (ISCIT), 2018, : 121 - 126
  • [22] Encrypted Network Traffic Classification Using a Geometric Learning Model
    Huoh, Ting-Li
    Luo, Yan
    Zhang, Tong
    [J]. 2021 IFIP/IEEE INTERNATIONAL SYMPOSIUM ON INTEGRATED NETWORK MANAGEMENT (IM 2021), 2021, : 376 - 383
  • [23] Deep-Full-Range: A Deep Learning Based Network Encrypted Traffic Classification and Intrusion Detection Framework
    Zeng, Yi
    Gu, Huaxi
    Wei, Wenting
    Guo, Yantao
    [J]. IEEE ACCESS, 2019, 7 : 45182 - 45190
  • [24] Incremental Learning for Mobile Encrypted Traffic Classification
    Chen, Yige
    Zang, Tianning
    Zhang, Yongzheng
    Zhou, Yuan
    Ouyang, Linshu
    Yang, Peng
    [J]. IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS (ICC 2021), 2021,
  • [25] Mobile Encrypted Traffic Classification Using Deep Learning: Experimental Evaluation, Lessons Learned, and Challenges
    Aceto, Giuseppe
    Ciuonzo, Domenico
    Montieri, Antonio
    Pescape, Antonio
    [J]. IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2019, 16 (02): : 445 - 458
  • [26] Detection and Classification of Network Traffic in Bot Network Using Deep Learning
    Srinarayani, K.
    Padmavathi, B.
    Datchanamoorthy, Kavitha
    Saraswathi, T.
    Maheswari, S.
    Vincy, R. Fatima
    [J]. JOURNAL OF INFORMATION & KNOWLEDGE MANAGEMENT, 2024,
  • [27] Real Time Traffic Light Detection and Classification using Deep Learning
    Ennahhal, Zakaria
    Berrada, Ismail
    Fardousse, Khalid
    [J]. 2019 INTERNATIONAL CONFERENCE ON WIRELESS NETWORKS AND MOBILE COMMUNICATIONS (WINCOM), 2019, : 116 - 122
  • [28] Network Traffic Classification Using Deep Learning
    Chen, Lei
    Liu, Jian
    Xian, Ming
    [J]. INTERNATIONAL JOURNAL ON ARTIFICIAL INTELLIGENCE TOOLS, 2020, 29 (7-8)
  • [29] Detection of Encrypted Malicious Network Traffic using Machine Learning
    De Lucia, Michael J.
    Cotton, Chase
    [J]. MILCOM 2019 - 2019 IEEE MILITARY COMMUNICATIONS CONFERENCE (MILCOM), 2019,
  • [30] Deep learning for encrypted traffic classification in the face of data drift: An empirical study
    Malekghaini, Navid
    Akbari, Elham
    Salahuddin, Mohammad A.
    Limam, Noura
    Boutaba, Raouf
    Mathieu, Bertrand
    Moteau, Stephanie
    Tuffin, Stephane
    [J]. COMPUTER NETWORKS, 2023, 225