A Framework & System for Classification of Encrypted Network Traffic using Machine Learning

被引:0
|
作者
Seddigh, Nabil [1 ]
Nandy, Biswajit [1 ]
Bennett, Don [1 ]
Ren, Yonglin [1 ]
Dolgikh, Serge [1 ]
Zeidler, Colin [1 ]
Knoetze, Juhandre [1 ]
Muthyala, Naveen Sai [1 ]
机构
[1] Solana Networks, Ottawa, ON, Canada
关键词
Traffic Classification; Encrypted Traffic; Machine Learning; Bid Data; Ground Truth;
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Traffic classification solutions are widely used by network operators and law enforcement agencies (LEA) for application identification. Widespread use of encryption reduces the accuracy of traditional traffic classification solutions such as DPI (Deep Packet Inspection). Machine Learning based solutions offer promise to fill the gap. However, enabling such systems to operate accurately in high speed networks remains a challenge. This paper makes multiple contributions. First, we report on the development of MLTAT, a high speed network classification platform which integrates DPI and machine learning and which supports flexible deployment of binary or multi-class classification solutions. Second, we identify a set of robust features which fulfill a dual-constraint - support 10Gbps computation rates and sufficient accuracy in the supervised machine learning models proposed for network traffic classification. Third, we develop a set of labeled data suitable for training the system and a framework for larger scale ground truth generation using co-training. Our findings indicate detection rates around 90% across 8 traffic classes, benchmarked in the system at 10Gbps rates.
引用
收藏
页数:5
相关论文
共 50 条
  • [1] Encrypted network traffic classification based on machine learning
    Elmaghraby, Reham T.
    Aziem, Nada M. Abdel
    Sobh, Mohammed A.
    Bahaa-Eldin, Ayman M.
    [J]. AIN SHAMS ENGINEERING JOURNAL, 2024, 15 (02)
  • [2] Encrypted Network Traffic Analysis and Classification Utilizing Machine Learning
    Alwhbi, Ibrahim A.
    Zou, Cliff C.
    Alharbi, Reem N.
    [J]. SENSORS, 2024, 24 (11)
  • [3] Hybrid feature learning framework for the classification of encrypted network traffic
    Ramraj, S.
    Usha, G.
    [J]. CONNECTION SCIENCE, 2023, 35 (01)
  • [4] Fingerprinting encrypted network traffic types using machine learning
    Leroux, Sam
    Bohez, Steven
    Maenhaut, Pieter-Jan
    Meheus, Nathan
    Simoens, Pieter
    Dhoedt, Bart
    [J]. NOMS 2018 - 2018 IEEE/IFIP NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM, 2018,
  • [5] Detection of Encrypted Malicious Network Traffic using Machine Learning
    De Lucia, Michael J.
    Cotton, Chase
    [J]. MILCOM 2019 - 2019 IEEE MILITARY COMMUNICATIONS CONFERENCE (MILCOM), 2019,
  • [6] Encrypted Network Traffic Classification Using a Geometric Learning Model
    Huoh, Ting-Li
    Luo, Yan
    Zhang, Tong
    [J]. 2021 IFIP/IEEE INTERNATIONAL SYMPOSIUM ON INTEGRATED NETWORK MANAGEMENT (IM 2021), 2021, : 376 - 383
  • [7] A new classification method for encrypted internet traffic using machine learning
    Ugurlu, Mesut
    Dogru, Ibrahim Alper
    Arslan, Recep Sinan
    [J]. TURKISH JOURNAL OF ELECTRICAL ENGINEERING AND COMPUTER SCIENCES, 2021, 29 (05) : 2450 - 2468
  • [8] Research on QoS Classification of Network Encrypted Traffic Behavior Based on Machine Learning
    Huang, Yung-Fa
    Lin, Chuan-Bi
    Chung, Chien-Min
    Chen, Ching-Mu
    [J]. ELECTRONICS, 2021, 10 (12)
  • [9] Encrypted Network Traffic Classification using Self-supervised Learning
    Towhid, Md Shamim
    Shahriar, Nashid
    [J]. PROCEEDINGS OF THE 2022 IEEE 8TH INTERNATIONAL CONFERENCE ON NETWORK SOFTWARIZATION (NETSOFT 2022): NETWORK SOFTWARIZATION COMING OF AGE: NEW CHALLENGES AND OPPORTUNITIES, 2022, : 366 - 374
  • [10] An experimental study of different machine and deep learning techniques for classification of encrypted network traffic
    Obasi, ThankGod
    Shafiq, M. Omair
    [J]. 2020 IEEE INTERNATIONAL CONFERENCE ON BIG DATA (BIG DATA), 2020, : 4690 - 4699