SETA: Scalable Encrypted Traffic Analytics in Multi-Gbps Networks

2020 IEEE 45th Conference on Local Computer Networks (LCN)(2020)

引用 7|浏览9
暂无评分
摘要
While end-to-end encryption brings security and privacy to the end-users, it makes legacy solutions such as Deep Packet Inspection ineffective. Despite the recent work in machine learning-based encrypted traffic classification, these new techniques would require, if they were to be deployed in real enterprise-scale networks, an enhanced flow sampling due to sheer volume of data being traversed. In this paper, we propose a holistic architecture that can cope with encryption and multi-Gbps line rate with sampling and sketching flow statistics, which allows network operators to both accurately estimate the flow size distribution and identify the nature of VPN-obfuscated traffic. With over 6000 video traffic traces, we show that it is possible to achieve 99% accuracy for service provider classification even with sampled possibly inaccurate data.
更多
查看译文
关键词
network operators,flow statistics,multiGbps line rate,enhanced flow sampling,enterprise-scale networks,deep packet inspection,machine learning-based encrypted traffic classification,legacy solutions,end-to-end encryption,multiGbps networks,scalable encrypted traffic analytics,SETA,service provider classification,video traffic traces,VPN-obfuscated traffic,flow size distribution
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要