Study on Privacy Preserving Encrypted Traffic Detection

ZHANG Xinyu,ZHANG Bingsheng,MENG Quanrun,REN Kui
DOI: https://doi.org/10.11959/j.issn.2096-109x.2021057
2021-01-01
Abstract:Existing encrypted traffic detection technologies lack privacy protection for data and models, which will violate the privacy preserving regulations and increase the security risk of privacy leakage. A privacy-preserving encrypted traffic detection system was proposed. It promoted the privacy of the encrypted traffic detection model by combining the gradient boosting decision tree (GBDT) algorithm with differential privacy. The privacy-protected encrypted traffic detection system was designed and implemented. The performance and the efficiency of proposed system using the CICIDS2017 dataset were evaluated, which contained the malicious traffic of the DDoS attack and the port scan. The results show that when the privacy budget value is set to 1, the system accuracy rates are 91.7% and 92.4% respectively. The training and the prediction of our model is efficient. The training time of proposed model is 5.16 s and 5.59 s, that is only 2-3 times of GBDT algorithm. The prediction time is close to the GBDT algorithm.
What problem does this paper attempt to address?