Open-Source Framework for Encrypted Internet and Malicious Traffic Classification

by   Ofek Bader, et al.

Internet traffic classification plays a key role in network visibility, Quality of Services (QoS), intrusion detection, Quality of Experience (QoE) and traffic-trend analyses. In order to improve privacy, integrity, confidentiality, and protocol obfuscation, the current traffic is based on encryption protocols, e.g., SSL/TLS. With the increased use of Machine-Learning (ML) and Deep-Learning (DL) models in the literature, comparison between different models and methods has become cumbersome and difficult due to a lack of a standardized framework. In this paper, we propose an open-source framework, named OSF-EIMTC, which can provide the full pipeline of the learning process. From the well-known datasets to extracting new and well-known features, it provides implementations of well-known ML and DL models (from the traffic classification literature) as well as evaluations. Such a framework can facilitate research in traffic classification domains, so that it will be more repeatable, reproducible, easier to execute, and will allow a more accurate comparison of well-known and novel features and models. As part of our framework evaluation, we demonstrate a variety of cases where the framework can be of use, utilizing multiple datasets, models, and feature sets. We show analyses of publicly available datasets and invite the community to participate in our open challenges using the OSF-EIMTC.


page 8

page 9

page 14

page 15


ML-based tunnel detection and tunneled application classification

Encrypted tunneling protocols are widely used. Beyond business and perso...

DeepQoE: A unified Framework for Learning to Predict Video QoE

Motivated by the prowess of deep learning (DL) based techniques in predi...

Active Learning Framework to Automate NetworkTraffic Classification

Recent network traffic classification methods benefitfrom machine learni...

We all do better when we work together?

This paper evaluates the impact of a RD signal on traffic crossing the m...

Autonomous Unknown-Application Filtering and Labeling for DL-based Traffic Classifier Update

Network traffic classification has been widely studied to fundamentally ...

Please sign up or login with your details

Forgot password? Click here to reset