Entropy Estimation for Real-Time Encrypted Traffic Identification (Short Paper)

被引:0
|
作者
Dorfinger, Peter [1 ]
Panholzer, Georg [1 ]
John, Wolfgang [2 ]
机构
[1] Salzburg Res, Salzburg, Austria
[2] Chalmers Univ Technol, Gothenburg, Sweden
关键词
entropy estimation; real-time detection; traffic filtering;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
This paper describes a novel approach to classify network traffic into encrypted and unencrypted traffic. The classifier is able to operate in real-time as only the first packet of each flow is processed. The main metric used for classification is an estimation of the entropy of the first packet payload. The approach is evaluated based on encrypted ground truth traces and on real network traces. Encrypted traffic such as Skype, or encrypted eDonkey traffic are detected as encrypted with probability higher than 94%. Unencrypted protocols such as SMTP, HTTP, POP3 or FTP are detected as unencrypted with probability higher than 99.9%. The presented approach, named real-time encrypted traffic detector (RT-ETD), is well suited to operate as pre-filter for advanced classification approaches to enable their applicability on increased bandwidth.
引用
收藏
页码:164 / +
页数:2
相关论文
共 50 条
  • [21] Real-time traffic estimation using data expansion
    Lederman, Roger
    Wynter, Laura
    [J]. TRANSPORTATION RESEARCH PART B-METHODOLOGICAL, 2011, 45 (07) : 1062 - 1079
  • [22] Effective and Real-time In-App Activity Analysis in Encrypted Internet Traffic Streams
    Liu, Junming
    Fu, Yanjie
    Ming, Jingci
    Ren, Yong
    Sun, Leilei
    Xiong, Hui
    [J]. KDD'17: PROCEEDINGS OF THE 23RD ACM SIGKDD INTERNATIONAL CONFERENCE ON KNOWLEDGE DISCOVERY AND DATA MINING, 2017, : 335 - 344
  • [23] DeepQoE: Real-time Measurement of Video QoE from Encrypted Traffic with Deep Learning
    Shen, Meng
    Zhang, Jinpeng
    Xu, Ke
    Zhu, Liehuang
    Liu, Jiangchuan
    Du, Xiaojiang
    [J]. 2020 IEEE/ACM 28TH INTERNATIONAL SYMPOSIUM ON QUALITY OF SERVICE (IWQOS), 2020,
  • [24] Real-time traffic estimation with incomplete information under urban traffic network
    Liu Liangyun
    Chen Shuyan
    Li Tao
    [J]. 2017 INTERNATIONAL CONFERENCE ON SMART CITY AND SYSTEMS ENGINEERING (ICSCSE 2017), 2017, : 163 - 166
  • [25] Real-Time Dynamic Traffic Control Based on Traffic-State Estimation
    Ahmed, Afzal
    Naqvi, Syed Ahsan Ali
    Watling, David
    Ngoduy, Dong
    [J]. TRANSPORTATION RESEARCH RECORD, 2019, 2673 (05) : 584 - 595
  • [26] Real-Time Traffic Density Estimation: Putting On-Coming Traffic to Work
    Florin, Ryan
    Olariu, Stephan
    [J]. IEEE TRANSACTIONS ON INTELLIGENT TRANSPORTATION SYSTEMS, 2023, 24 (01) : 1374 - 1383
  • [27] Network State Estimation and Prediction for Real-Time Traffic Management
    Moshe Ben-Akiva
    Michel Bierlaire
    Didier Burton
    Haris N. Koutsopoulos
    Rabi Mishalani
    [J]. Networks and Spatial Economics, 2001, 1 (3-4) : 293 - 318
  • [28] Introduction to the Special Issue on Real-Time Traffic State Estimation
    Olariu, Stephan
    El-Tawab, Samy
    [J]. IEEE TRANSACTIONS ON INTELLIGENT TRANSPORTATION SYSTEMS, 2023, 24 (01) : 1356 - 1358
  • [29] Real-Time Air Traffic Flow Estimation in the Terminal Area
    Yang, Bong-Jun
    Menon, P. K.
    [J]. JOURNAL OF AIRCRAFT, 2015, 52 (03): : 778 - 791
  • [30] Real-time traffic volume estimation with fuzzy linear regression
    Dai, Hong
    Yang, Zhaosheng
    Guo, Shengwei
    [J]. WCICA 2006: SIXTH WORLD CONGRESS ON INTELLIGENT CONTROL AND AUTOMATION, VOLS 1-12, CONFERENCE PROCEEDINGS, 2006, : 3164 - 3167