DATE: | Thursday, Feb 12, 2009 |
TIME: | 2:45 pm |
PLACE: | Council Room (SITE 5-084) |
TITLE: | Identifying Encrypted Traffic: A Case Study of SSH |
PRESENTER: | Nur Zincir-Heywood Dalhousie University |
ABSTRACT:
In this work, a set of best practices are investigated for the identification of encrypted traffic where SSH is taken as the example application for a case study. Different feature sets are evaluated to assess the generalization of machine learning based traffic identification. Traffic identification is performed without using payload information, IP addresses, and source/destination ports. |