Publication:
Encrypted Traffic characterization using None Zero payload and Payload Ratio Characteristics

dc.contributor.authorWatchara Satrabhandhuen_US
dc.contributor.authorSuratose Tritilanunten_US
dc.contributor.otherMahidol Universityen_US
dc.date.accessioned2022-08-04T08:28:19Z
dc.date.available2022-08-04T08:28:19Z
dc.date.issued2021-01-01en_US
dc.description.abstractTraffic characterization has been the backbone of network maintenance procedures, such as limiting bandwidth for specific services. However, with today's network, traditional techniques fall short. Traffic characterization using machining learning has been intensively researched to alleviate the shortcomings of traditional methods. This paper proposed a Bi-direction Flow Non-zero Payload Flow (BIF-NZPF) data extraction scheme and Bi-direction Flow Payload Ratio feature (BIF-PR) for supervised traditional machine learning. Our approach is measured on a publicly available ISCX VPN-NonVPN dataset to classify 12 types of traffic using precision, recall, and accuracy. BIF-NZPF reduced the obscurity of application characteristics by filtering out TCP configuration packets. BIF-PR further detailed traffic characteristics using payload size distribution characteristics through local and global traffic flow while being lightly coupled with the duration of traffic flow. Lastly, the ISCX-VPN-NonVPN imbalance class issue is alleviated using a boosting ensemble algorithm, which improves performance.en_US
dc.identifier.citationICSEC 2021 - 25th International Computer Science and Engineering Conference. (2021), 63-69en_US
dc.identifier.doi10.1109/ICSEC53205.2021.9684630en_US
dc.identifier.other2-s2.0-85125166650en_US
dc.identifier.urihttps://repository.li.mahidol.ac.th/handle/20.500.14594/76713
dc.rightsMahidol Universityen_US
dc.rights.holderSCOPUSen_US
dc.source.urihttps://www.scopus.com/inward/record.uri?partnerID=HzOxMe3b&scp=85125166650&origin=inwarden_US
dc.subjectComputer Scienceen_US
dc.subjectEngineeringen_US
dc.subjectMathematicsen_US
dc.titleEncrypted Traffic characterization using None Zero payload and Payload Ratio Characteristicsen_US
dc.typeConference Paperen_US
dspace.entity.typePublication
mu.datasource.scopushttps://www.scopus.com/inward/record.uri?partnerID=HzOxMe3b&scp=85125166650&origin=inwarden_US

Files

Collections