DATE: Thursday, Feb 12, 2009
TIME: 2:45 pm
PLACE: Council Room (SITE 5-084)
TITLE: Identifying Encrypted Traffic: A Case Study of SSH
PRESENTER: Nur Zincir-Heywood
Dalhousie University
ABSTRACT:

In this work, a set of best practices are investigated for the identification of encrypted traffic where SSH is taken as the example application for a case study. Different feature sets are evaluated to assess the generalization of machine learning based traffic identification. Traffic identification is performed without using payload information, IP addresses, and source/destination ports.