Fast Packet Inspection for End-To-End Encryption

被引:3
作者
Kim, So-Yeon [1 ]
Yun, Sun-Woo [2 ]
Lee, Eun-Young [1 ]
Bae, So-Hyeon [1 ]
Lee, Il-Gu [2 ]
机构
[1] Sungshin Univ, Dept Convergence Secur Engn, Seoul 02844, South Korea
[2] Sungshin Univ, Dept Future Convergence Technol Engn, Seoul 02844, South Korea
基金
新加坡国家研究基金会;
关键词
end-to-end encryption (E2EE); packet inspection; integrity; malware detection; security; confidentiality;
D O I
10.3390/electronics9111937
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
With the recent development and popularization of various network technologies, communicating with people at any time, and from any location, using high-speed internet, has become easily accessible. At the same time, eavesdropping, data interception, personal data leakage, and distribution of malware during the information transfer process have become easier than ever. Recently, to respond to such threats, end-to-end encryption (E2EE) technology has been widely implemented in commercial network services as a popular information security system. However, with the use of E2EE technology, it is difficult to check whether an encrypted packet is malicious in an information security system. A number of studies have been previously conducted on deep packet inspection (DPI) through trustable information security systems. However, the E2EE is not maintained when conducting a DPI, which requires a long inspection time. Thus, in this study, a fast packet inspection (FPI) and its frame structure for quickly detecting known malware patterns while maintaining E2EE are proposed. Based on the simulation results, the proposed FPI allows for inspecting packets approximately 14.4 and 5.3 times faster, respectively, when the inspection coverage is 20% and 100%, as compared with a DPI method under a simulation environment in which the payload length is set to 640 bytes.
引用
收藏
页码:1 / 14
页数:14
相关论文
共 32 条
[1]   MIMETIC: Mobile encrypted traffic classification using multimodal deep learning [J].
Aceto, Giuseppe ;
Ciuonzo, Domenico ;
Montieri, Antonio ;
Pescape, Antonio .
COMPUTER NETWORKS, 2019, 165
[2]   QCF for deep packet inspection [J].
Al-hisnawi, Mohammad ;
Ahmadi, Mahmood .
IET NETWORKS, 2018, 7 (05) :346-352
[3]   Deep Packet Inspection Using Quotient Filter [J].
Al-hisnawi, Mohammad ;
Ahmadi, Mahmood .
IEEE COMMUNICATIONS LETTERS, 2016, 20 (11) :2217-2220
[4]  
Amaral P., 2016, 2016 IEEE 24th International conference on network protocols (ICNP), P1, DOI DOI 10.1109/ICNP.2016.7785327
[5]  
[Anonymous], 2018, P 2018 IEEE GLOB COM
[6]  
Cohn-Gordon K., 2018, P 2018 IEEE EUR S SE, P451
[7]  
DMC MEDIA, 2019, 2019 MOB MESS APP US
[8]  
Elagin V.S., 2018, P 2018 SYST SIGN GEN, P1
[9]  
Endeley R.E., 2018, J. Inf. Secur., V9, P95, DOI DOI 10.4236/JIS.2018.91008
[10]  
Espinoza A.M., 2017, P 7 USENIX WORKSH FR