首页> 外军国防科技报告 >Life of a Security Middlebox : Challenges with Emerging Protocols and Technologies
【2h】

Life of a Security Middlebox : Challenges with Emerging Protocols and Technologies

机译:安全中间盒的寿命:新兴协议和技术的挑战

代理获取
代理获取并翻译 | 示例

摘要

The Internet of today has intermediary devices known as middleboxes that perform more functions than the normal packet forwarding function of a router. Security middleboxes are a subset of these middleboxes and face an increasingly difficult task to perform their functions correctly. These middleboxes make many assumptions about the traffic that may not hold true any longer with the advent of new protocols such as MPTCP and technologies like end-to-end encryption.

The work in this thesis focuses on security middleboxes and the challenges they face. We develop methods and solutions to help these security middleboxes continue to function correctly. In particular, we investigate the case of using MPTCP over traditional security infrastructure as well as the case of end-to-end encryption. We study how practical it is to evade a security middlebox by fragmenting and sending traffic across multiple paths using MPTCP. We then go on to propose possible solutions to detect such attacks and implement them. The potential MPTCP scenario where security middleboxes only have access to part of the traffic is also investigated and addressed. Moreover, the thesis contributes a machine learning based approach to help security middleboxes detect malware in encrypted traffic without decryption.

著录项

  • 作者

    Afzal, Zeeshan;

  • 作者单位
  • 年(卷),期 2020(),
  • 年度 2020
  • 页码
  • 总页数 44
  • 原文格式 PDF
  • 正文语种
  • 中图分类
  • 网站名称 在线学术档案数据库
  • 栏目名称 所有文件
  • 关键词

代理获取

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号