A Survey of Methods for Encrypted Traffic Classification and Analysis
The result's identifiers
Result code in IS VaVaI
<a href="https://www.isvavai.cz/riv?ss=detail&h=RIV%2F00216224%3A14610%2F15%3A00080523" target="_blank" >RIV/00216224:14610/15:00080523 - isvavai.cz</a>
Result on the web
<a href="http://is.muni.cz/repo/1305020/a-survey-of-methods-for-encrypted-traffic-classification-and-analysis.pdf" target="_blank" >http://is.muni.cz/repo/1305020/a-survey-of-methods-for-encrypted-traffic-classification-and-analysis.pdf</a>
DOI - Digital Object Identifier
<a href="http://dx.doi.org/10.1002/nem.1901" target="_blank" >10.1002/nem.1901</a>
Alternative languages
Result language
angličtina
Original language name
A Survey of Methods for Encrypted Traffic Classification and Analysis
Original language description
With the widespread use of encrypted data transport network traffic encryption is becoming a standard nowadays. This presents a challenge for traffic measurement, especially for analysis and anomaly detection methods which are dependent on the type of network traffic. In this paper, we survey existing approaches for classification and analysis of encrypted traffic. First, we describe the most widespread encryption protocols used throughout the Internet. We show that the initiation of an encrypted connection and the protocol structure give away a lot of information for encrypted traffic classification and analysis. Then, we survey payload and feature-based classification methods for encrypted traffic and categorize them using an established taxonomy. The advantage of some of described classification methods is the ability to recognize the encrypted application protocol in addition to the encryption protocol.
Czech name
—
Czech description
—
Classification
Type
J<sub>x</sub> - Unclassified - Peer-reviewed scientific article (Jimp, Jsc and Jost)
CEP classification
IN - Informatics
OECD FORD branch
—
Result continuities
Project
<a href="/en/project/VF20142015037" target="_blank" >VF20142015037: Decoding of Encrypted Data Communication</a><br>
Continuities
P - Projekt vyzkumu a vyvoje financovany z verejnych zdroju (s odkazem do CEP)
Others
Publication year
2015
Confidentiality
S - Úplné a pravdivé údaje o projektu nepodléhají ochraně podle zvláštních právních předpisů
Data specific for result type
Name of the periodical
International Journal of Network Management
ISSN
1055-7148
e-ISSN
—
Volume of the periodical
25
Issue of the periodical within the volume
5
Country of publishing house
US - UNITED STATES
Number of pages
20
Pages from-to
355-374
UT code for WoS article
000360842100007
EID of the result in the Scopus database
—