Skip to main navigation Skip to search Skip to main content

SPABox: Safeguarding Privacy during Deep Packet Inspection at a MiddleBox

  • SUNY Buffalo
  • Tsinghua University

Research output: Contribution to journalArticlepeer-review

53 Scopus citations

Abstract

Widely used over the Internet to encrypt traffic, HTTPS provides secure and private data communication between clients and servers. However, to cope with rapidly changing and sophisticated security attacks, network operators often deploy middleboxes to perform deep packet inspection DPI to detect attacks and potential security breaches, using techniques ranging from simple keyword matching to more advanced machine learning and data mining analysis. But this creates a problem: How can middleboxes, which employ DPI, work over HTTPS connections with encrypted traffic while preserving privacy? In this paper, we present SPABox, a middlebox-based system that supports both keyword-based and data analysis-based DPI functions over encrypted traffic. SPABox preserves privacy by using a novel protocol with a limited connection setup overhead. We implement SPABox on a standard server and show that SPABox is practical for both long-lived and short-lived connection. Compared with the state-of-the-art Blindbox system, SPABox is more than five orders of magnitude faster and requires seven orders of magnitude less bandwidth for connection setup while SPABox can achieve a higher security level.

Original languageEnglish
Pages (from-to)3753-3766
Number of pages14
JournalIEEE/ACM Transactions on Networking
Volume25
Issue number6
DOIs
StatePublished - Dec 2017

Keywords

  • DPI
  • middlebox
  • privacy preserving

Fingerprint

Dive into the research topics of 'SPABox: Safeguarding Privacy during Deep Packet Inspection at a MiddleBox'. Together they form a unique fingerprint.

Cite this