论文标题
HTTPS流量和服务识别方法的调查
A Survey of HTTPS Traffic and Services Identification Approaches
论文作者
论文摘要
HTTP迅速随着互联网用户在访问Web时从安全性和隐私中受益而迅速上升,并且成为Internet上的主要应用程序协议。使用HTTPS迁移到安全网络的迁移面带有与HTTPS流量管理有关的重要挑战,以确保基本网络属性,例如安全性,QoS,可靠性等。但是,加密破坏了标准监视技术的有效性,使ISPS和网络管理员难以正确地识别HTTPS流量背后的服务和管理HTTPS流量的服务。该调查详细介绍了用于监视HTTPS流量的技术,从最基本的协议识别级别(TLS,HTTPS)到精确服务的最佳识别。我们表明,尽管最近进步,但协议识别已经很好地掌握了,而更精确的水平仍然具有挑战性。我们还描述了实用的解决方案,这些解决方案使我们讨论了安全与隐私之间的权衡以及保证这两个方向的研究方向。
HTTPS is quickly rising alongside the need of Internet users to benefit from security and privacy when accessing the Web, and it becomes the predominant application protocol on the Internet. This migration towards a secure Web using HTTPS comes with important challenges related to the management of HTTPS traffic to guarantee basic network properties such as security, QoS, reliability, etc. But encryption undermines the effectiveness of standard monitoring techniques and makes it difficult for ISPs and network administrators to properly identify and manage the services behind HTTPS traffic. This survey details the techniques used to monitor HTTPS traffic, from the most basic level of protocol identification (TLS, HTTPS), to the finest identification of precise services. We show that protocol identification is well mastered while more precise levels keep being challenging despite recent advances. We also describe practical solutions that lead us to discuss the trade-off between security and privacy and the research directions to guarantee both of them.