TY - JOUR
T1 - 一种基于HTTP/2协议的隐蔽序列信道方法
AU - Liu, Zhengyi
AU - Song, Tian
N1 - Publisher Copyright:
© 2018, Science Press. All right reserved.
PY - 2018/6/1
Y1 - 2018/6/1
N2 - Covert communication technology offers effective privacy-preserving and secure data transmission services with covertness in behavior and content. Existing covert storage channels have always been questioned about their covertness. On the other hand, covert timing channels mainly use middle and lower layer network protocols as overt channels, which usually requires complex encoding methods to reduce bit error rates. It is hard to satisfy the transmission rate requirements through current covert timing channels as well. In this paper, we present H2CSC, a new covert sequence channel approach over the next-generation application layer HTTP/2 protocol. H2CSC controls and manipulates the responses of HTTP/2 Web server to its requests, forming a kind of covert sequence from the stream IDs of those response frames. Then, H2CSC exploits combinatorial coding methods to embed covert bits into these frame sequences. It takes advantage of HTTP/2 protocol to provide channel reliability and security. We implement H2CSC method in the widely used Apache Web server as a function module, and examine the channel's effectiveness and robustness in the real system. We further evaluate the covertness of this channel by using a detection method based on logistic regression of corrected conditional entropy. The experimental results show that H2CSC could provide 574 bps of covert transmission rates with excellent robustness and covertness.
AB - Covert communication technology offers effective privacy-preserving and secure data transmission services with covertness in behavior and content. Existing covert storage channels have always been questioned about their covertness. On the other hand, covert timing channels mainly use middle and lower layer network protocols as overt channels, which usually requires complex encoding methods to reduce bit error rates. It is hard to satisfy the transmission rate requirements through current covert timing channels as well. In this paper, we present H2CSC, a new covert sequence channel approach over the next-generation application layer HTTP/2 protocol. H2CSC controls and manipulates the responses of HTTP/2 Web server to its requests, forming a kind of covert sequence from the stream IDs of those response frames. Then, H2CSC exploits combinatorial coding methods to embed covert bits into these frame sequences. It takes advantage of HTTP/2 protocol to provide channel reliability and security. We implement H2CSC method in the widely used Apache Web server as a function module, and examine the channel's effectiveness and robustness in the real system. We further evaluate the covertness of this channel by using a detection method based on logistic regression of corrected conditional entropy. The experimental results show that H2CSC could provide 574 bps of covert transmission rates with excellent robustness and covertness.
KW - Combinatorial coding methods
KW - Corrected conditional entropy
KW - Covert channel
KW - Data frame sequence
KW - HTTP/2 protocol
UR - http://www.scopus.com/inward/record.url?scp=85053389930&partnerID=8YFLogxK
U2 - 10.7544/issn1000-1239.2018.20170451
DO - 10.7544/issn1000-1239.2018.20170451
M3 - 文章
AN - SCOPUS:85053389930
SN - 1000-1239
VL - 55
SP - 1157
EP - 1166
JO - Jisuanji Yanjiu yu Fazhan/Computer Research and Development
JF - Jisuanji Yanjiu yu Fazhan/Computer Research and Development
IS - 6
ER -