Detection of DoH Traffic Tunnels Using Deep Learning for Encrypted Traffic Classification

被引:5
|
作者
Alzighaibi, Ahmad Reda [1 ]
机构
[1] Taibah Univ, Coll Comp Sci & Engn, Yanbu 42353, Saudi Arabia
关键词
DNS over HTTPS (DoH); CIRA-CIC-DoHBrw-2020; deep Learning; encrypted traffic classification;
D O I
10.3390/computers12030047
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Currently, the primary concerns on the Internet are security and privacy, particularly in encrypted communications to prevent snooping and modification of Domain Name System (DNS) data by hackers who may attack using the HTTP protocol to gain illegal access to the information. DNS over HTTPS (DoH) is the new protocol that has made remarkable progress in encrypting Domain Name System traffic to prevent modifying DNS traffic and spying. To alleviate these challenges, this study explored the detection of DoH traffic tunnels of encrypted traffic, with the aim to determine the gained information through the use of HTTP. To implement the proposed work, state-of-the-art machine learning algorithms were used including Random Forest (RF), Gaussian Naive Bayes (GNB), Logistic Regression (LR), k-Nearest Neighbor (KNN), the Support Vector Classifier (SVC), Linear Discriminant Analysis (LDA), Decision Tree (DT), Adaboost, Gradient Boost (SGD), and LSTM neural networks. Moreover, ensemble models consisting of multiple base classifiers were utilized to carry out a series of experiments and conduct a comparative study. The CIRA-CIC-DoHBrw2020 dataset was used for experimentation. The experimental findings showed that the detection accuracy of the stacking model for binary classification was 99.99%. In the multiclass classification, the gradient boosting model scored maximum values of 90.71%, 90.71%, 90.87%, and 91.18% in Accuracy, Recall, Precision, and AUC. Moreover, the micro average ROC curve for the LSTM model scored 98%.
引用
收藏
页数:17
相关论文
共 50 条
  • [31] Deep learning for encrypted traffic classification in the face of data drift: An empirical study
    Malekghaini, Navid
    Akbari, Elham
    Salahuddin, Mohammad A.
    Limam, Noura
    Boutaba, Raouf
    Mathieu, Bertrand
    Moteau, Stephanie
    Tuffin, Stephane
    COMPUTER NETWORKS, 2023, 225
  • [32] Trustworthy deep learning for encrypted traffic classificationTrustworthy deep learning for encrypted traffic classificationZ. Li et al.
    Zheng Li
    Yanbei Liu
    Changqing Zhang
    Wanjin Shan
    Haifeng Zhang
    Xiaoming Zhu
    Soft Computing, 2025, 29 (2) : 645 - 662
  • [33] Deep Learning Applications for Traffic Sign Detection and Classification
    Borisov, M.
    Ososkov, G.
    PHYSICS OF PARTICLES AND NUCLEI LETTERS, 2023, 20 (05) : 1279 - 1282
  • [34] Deep Learning Applications for Traffic Sign Detection and Classification
    M. Borisov
    G. Ososkov
    Physics of Particles and Nuclei Letters, 2023, 20 : 1279 - 1282
  • [35] Encrypted Network Traffic Classification using Self-supervised Learning
    Towhid, Md Shamim
    Shahriar, Nashid
    PROCEEDINGS OF THE 2022 IEEE 8TH INTERNATIONAL CONFERENCE ON NETWORK SOFTWARIZATION (NETSOFT 2022): NETWORK SOFTWARIZATION COMING OF AGE: NEW CHALLENGES AND OPPORTUNITIES, 2022, : 366 - 374
  • [36] A Framework & System for Classification of Encrypted Network Traffic using Machine Learning
    Seddigh, Nabil
    Nandy, Biswajit
    Bennett, Don
    Ren, Yonglin
    Dolgikh, Serge
    Zeidler, Colin
    Knoetze, Juhandre
    Muthyala, Naveen Sai
    2019 15TH INTERNATIONAL CONFERENCE ON NETWORK AND SERVICE MANAGEMENT (CNSM), 2019,
  • [37] A new classification method for encrypted internet traffic using machine learning
    Ugurlu, Mesut
    Dogru, Ibrahim Alper
    Arslan, Recep Sinan
    TURKISH JOURNAL OF ELECTRICAL ENGINEERING AND COMPUTER SCIENCES, 2021, 29 (05) : 2450 - 2468
  • [38] Encrypted Traffic Classification Using Statistical Features
    Mahdavi, Ehsan
    Fanian, Ali
    Hassannejad, Homa
    ISECURE-ISC INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2018, 10 (01): : 29 - 43
  • [39] A Deep Learning-Based Encrypted VPN Traffic Classification Method Using Packet Block Image
    Sun, Weishi
    Zhang, Yaning
    Li, Jie
    Sun, Chenxing
    Zhang, Shuzhuang
    ELECTRONICS, 2023, 12 (01)
  • [40] FedETC: Encrypted traffic classification based on federated learning
    Jin, Zhiping
    Duan, Ke
    Chen, Changhui
    He, Meirong
    Jiang, Shan
    Xue, Hanxiao
    HELIYON, 2024, 10 (16)