The Effectiveness Study of ML-based Methods for Protocol Identification in Different Network Environments

Provided by: Science & Engineering Research Support soCiety (SERSC)
Topic: Security
Format: PDF
Due to the wide use of encrypted protocols and random ports, traditional methods that based on port number or packet payload have gradually lose their effectiveness. To address this issue, new methods that based on machine learning techniques become the research hotspots. With many further studies, some research institutions show that ML-based protocol identification methods can generally achieve over 95% accuracy. However, different from most research papers, industry claims that ML-based techniques are hardly to be deployed for practical use due to their high false positives and false negatives.

Find By Topic