Service Identification Method for Encrypted Traffic Based on SSL/TLS 


Vol. 40,  No. 11, pp. 2160-2168, Nov.  2015


PDF
  Abstract

The SSL/TLS, one of the most popular encryption protocol, was developed as a solution of various network security problem while the network traffic has become complex and diverse. But the SSL/TLS traffic has been identified as its protocol name, not its used services, which is required for the effective network traffic management. This paper proposes a new method to generate service signatures automatically from SSL/TLS payload data and to classify network traffic in accordance with their application services. We utilize the certificate publication information field in the certificate exchanging record of SSL/TLS traffic for the service signatures, which occurs when SSL/TLS performs Handshaking before encrypt transmission. We proved the performance and feasibility of the proposed method by experimental result that classify about 95% SSL/TLS traffic with 95% accuracy for every SSL/TLS services.

  Statistics
Cumulative Counts from November, 2022
Multiple requests among the same browser session are counted as one view. If you mouse over a chart, the values of data points will be shown.


  Cite this article

[IEEE Style]

S. Kim, J. Park, S. Yoon, J. Kim, S. Choi, M. Kim, "Service Identification Method for Encrypted Traffic Based on SSL/TLS," The Journal of Korean Institute of Communications and Information Sciences, vol. 40, no. 11, pp. 2160-2168, 2015. DOI: .

[ACM Style]

Sung-Min Kim, Jun-Sang Park, Sung-Ho Yoon, Jong-Hyun Kim, Sun-Oh Choi, and Myung-Sup Kim. 2015. Service Identification Method for Encrypted Traffic Based on SSL/TLS. The Journal of Korean Institute of Communications and Information Sciences, 40, 11, (2015), 2160-2168. DOI: .

[KICS Style]

Sung-Min Kim, Jun-Sang Park, Sung-Ho Yoon, Jong-Hyun Kim, Sun-Oh Choi, Myung-Sup Kim, "Service Identification Method for Encrypted Traffic Based on SSL/TLS," The Journal of Korean Institute of Communications and Information Sciences, vol. 40, no. 11, pp. 2160-2168, 11. 2015.