<?xml version="1.0" encoding="UTF-8"?>
<!DOCTYPE ArticleSet PUBLIC "-//NLM//DTD PubMed 2.7//EN" "https://dtd.nlm.nih.gov/ncbi/pubmed/in/PubMed.dtd">
<ArticleSet>
<Article>
<Journal>
				<PublisherName>Iranian Society of Cryptology</PublisherName>
				<JournalTitle>The ISC International Journal of Information Security</JournalTitle>
				<Issn>2008-2045</Issn>
				<Volume>10</Volume>
				<Issue>1</Issue>
				<PubDate PubStatus="epublish">
					<Year>2018</Year>
					<Month>01</Month>
					<Day>01</Day>
				</PubDate>
			</Journal>
<ArticleTitle>Classification of encrypted traffic for applications based on statistical features</ArticleTitle>
<VernacularTitle></VernacularTitle>
			<FirstPage>29</FirstPage>
			<LastPage>43</LastPage>
			<ELocationID EIdType="pii">57480</ELocationID>
			
<ELocationID EIdType="doi">10.22042/isecure.2018.95316.390</ELocationID>
			
			<Language>EN</Language>
<AuthorList>
<Author>
					<FirstName>A.</FirstName>
					<LastName>Fanian</LastName>
<Affiliation>Department of Electrical and Computer Engineering, Isfahan University of Technology, Isfahan, Iran</Affiliation>

</Author>
<Author>
					<FirstName>E.</FirstName>
					<LastName>Mahdavi</LastName>
<Affiliation>Department of Electrical and Computer Engineering, Isfahan University of Technology, Isfahan, Iran</Affiliation>

</Author>
<Author>
					<FirstName>H.</FirstName>
					<LastName>Hassannejad</LastName>
<Affiliation>Department of Electrical and Computer Engineering, Isfahan University of Technology, Isfahan, Iran</Affiliation>

</Author>
</AuthorList>
				<PublicationType>Journal Article</PublicationType>
			<History>
				<PubDate PubStatus="received">
					<Year>2017</Year>
					<Month>08</Month>
					<Day>13</Day>
				</PubDate>
			</History>
		<Abstract>Traffic classification plays an important role in many aspects of network management such as identifying type of the transferred data, detection of malware applications, applying policies to restrict network accesses and so on. Basic methods in this field were using some obvious traffic features like port number and protocol type to classify the traffic type. However, recent changes in applications make these features imperfect for such tasks. As a remedy, network traffic classification using machine learning techniques is now evolving. In this article, a new semi-supervised learning is proposed which utilizes clustering algorithms and label propagation techniques. The clustering part is based on graph theory and minimum spanning tree (MST) algorithm. In the next level, some pivot data instances are selected for the expert to vote for their classes, and the identified class labels will be used for similar data instances with no labels. In the last part, the decision tree algorithm is used to construct the classification model. The results show that the proposed method has a precise and accurate performance in classification of encrypted traffic for the network applications. It also provides desirable results for plain un-encrypted traffic classification, especially for unbalanced streams of data.</Abstract>
		<ObjectList>
			<Object Type="keyword">
			<Param Name="value">: Traffic classification</Param>
			</Object>
			<Object Type="keyword">
			<Param Name="value">Encrypted traffic</Param>
			</Object>
			<Object Type="keyword">
			<Param Name="value">Network management</Param>
			</Object>
			<Object Type="keyword">
			<Param Name="value">Traffic analysis</Param>
			</Object>
		</ObjectList>
<ArchiveCopySource DocType="pdf">https://www.isecure-journal.com/article_57480_4945711118b8be0929a3de9fa103fed5.pdf</ArchiveCopySource>
</Article>
</ArticleSet>
