The classification of SSH tunneled traffic using maximum likelihood classifier | |
TanXiaobing; SuXiuqin(苏秀琴); QianQingming; Tan Xiaobing | |
2011 | |
会议名称 | 2011 International Conference on Electronics, Communications and Control, ICECC 2011 |
会议录名称 | 2011 International Conference on Electronics, Communications and Control |
页码 | 2347-2350 |
会议日期 | September 9, 2011 - September 11, 2011 |
会议地点 | Ningbo, China |
会议主办者 | Ningbo University |
产权排序 | 1 |
摘要 | Secure SHell(SSH) [1] provides TCP/IP port forwarding for any Application-layer protocols. It is useful in protecting the privacy of users, but it can lead to the illegal use of some forbidden protocols. Because of the encryption, the Deep Payload Inspection (DPI) technique is ineffective in classifying the network traffic. This paper introduces how to employ the statistical pattern recognition method, Maximum Likelihood Classification [2, 3], to classify the SSH tunneled traffic, i.e. to decide which protocols is tunneled in the encrypted tunnels. It is very important to find out the boundary of a tunneled flow in processing the originate data. So we proposed a method for detecting the boundaries of SSH tunneled traffic. |
关键词 | Ssh Tunnel Traffic Classification Boundary Detection Maximum Likelihood Classification |
收录类别 | EI |
ISBN号 | 9781457703218 |
语种 | 英语 |
文献类型 | 会议论文 |
条目标识符 | http://ir.opt.ac.cn/handle/181661/20023 |
专题 | 光电跟踪与测量技术研究室 |
通讯作者 | Tan Xiaobing |
推荐引用方式 GB/T 7714 | TanXiaobing,SuXiuqin,QianQingming,et al. The classification of SSH tunneled traffic using maximum likelihood classifier[C],2011:2347-2350. |
条目包含的文件 | ||||||
文件名称/大小 | 文献类型 | 版本类型 | 开放类型 | 使用许可 | ||
The classification o(227KB) | 会议论文 | 限制开放 | CC BY-NC-SA | 请求全文 |
除非特别说明,本系统中所有内容都受版权保护,并保留所有权利。
修改评论