A machine learning approach for improving the performance of network intrusion detection systems

被引:0
|
作者
Azizan A.H. [1 ]
Mostafa S.A. [1 ]
Mustapha A. [1 ]
Mohd Foozy C.F. [1 ]
Abd Wahab M.H. [1 ]
Mohammed M.A. [2 ]
Khalaf B.A. [3 ,4 ]
机构
[1] University Tun Hussein Onn Malaysia, Johor
[2] University of Anbar, Anbar
[3] University of Diyala, Diyala
[4] Middle Technical University, Baghdad
关键词
Cic-ids2017; Decision jungle; Detection rate; False alarms; Intrusion detection systems; Machine; Random forest; Support vector machine;
D O I
10.33166/AETiC.2021.05.025
中图分类号
学科分类号
摘要
Intrusion detection systems (IDS) are used in analyzing huge data and diagnose anomaly traffic such as DDoS attack; thus, an efficient traffic classification method is necessary for the IDS. The IDS models attempt to decrease false alarm and increase true alarm rates in order to improve the performance accuracy of the system. To resolve this concern, three machine learning algorithms have been tested and evaluated in this research which are decision jungle (DJ), random forest (RF) and support vector machine (SVM). The main objective is to propose a ML-based network intrusion detection system (ML-based NIDS) model that compares the performance of the three algorithms based on their accuracy and precision of anomaly traffics. The knowledge discovery in databases (KDD) methodology and intrusion detection evaluation dataset (CIC-IDS2017) are used in the testing which both are considered as a benchmark in the evaluation of IDS. The average accuracy results of the SVM is 98.18%, RF is 96.76% and DJ is 96.50% in which the highest accuracy is achieved by the SVM. The average precision results of the SVM is 98.74, RF is 97.96 and DJ is 97.82 in which the SVM got a higher average precision compared with the other two algorithms. The average recall results of the SVM is 95.63, RF is 97.62 and DJ is 95.77 in which the RF achieves the highest average of recall than SVM and DJ. In overall, the SVM algorithm is found to be the best algorithm that can be used to detect an intrusion in the system. © 2021 by the author(s).
引用
收藏
页码:201 / 208
页数:7
相关论文
共 50 条
  • [1] Improving the performance of the intrusion detection systems by the machine learning explainability
    Quang-Vinh Dang
    INTERNATIONAL JOURNAL OF WEB INFORMATION SYSTEMS, 2021, 17 (05) : 537 - 555
  • [2] A hybrid machine learning method for increasing the performance of network intrusion detection systems
    Megantara, Achmad Akbar
    Ahmad, Tohari
    JOURNAL OF BIG DATA, 2021, 8 (01)
  • [3] Network intrusion detection system: A machine learning approach
    Panda, Mrutyunjaya
    Abraham, Ajith
    Das, Swagatam
    Patra, Manas Ranjan
    INTELLIGENT DECISION TECHNOLOGIES-NETHERLANDS, 2011, 5 (04): : 347 - 356
  • [4] A hybrid machine learning method for increasing the performance of network intrusion detection systems
    Achmad Akbar Megantara
    Tohari Ahmad
    Journal of Big Data, 8
  • [5] Improving the Accuracy of Network Intrusion Detection with Causal Machine Learning
    Zeng, Zengri
    Peng, Wei
    Zhao, Baokang
    SECURITY AND COMMUNICATION NETWORKS, 2021, 2021
  • [6] Adversarial machine learning in Network Intrusion Detection Systems
    Alhajjar, Elie
    Maxwell, Paul
    Bastian, Nathaniel
    EXPERT SYSTEMS WITH APPLICATIONS, 2021, 186
  • [7] Improving the Performance of Machine Learning-Based Network Intrusion Detection Systems on the UNSW-NB15 Dataset
    Moualla, Soulaiman
    Khorzom, Khaldoun
    Jafar, Assef
    COMPUTATIONAL INTELLIGENCE AND NEUROSCIENCE, 2021, 2021
  • [8] Advancing Network Intrusion Detection Systems with Machine Learning Techniques
    Benmalek, Mourad
    Haouam, Kamel-Dine
    ADVANCES IN ARTIFICIAL INTELLIGENCE AND MACHINE LEARNING, 2024, 4 (03): : 2575 - 2592
  • [9] Securing Networks: A Machine Learning Approach to Intrusion Detection Systems
    Mathur, Tanay
    Jha, Anuja
    Appalla, Avani
    Vats, Prashant
    SMART TRENDS IN COMPUTING AND COMMUNICATIONS, VOL 3, SMARTCOM 2024, 2024, 947 : 61 - 71
  • [10] Comparison of Machine Learning and Deep Learning Models for Network Intrusion Detection Systems
    Thapa, Niraj
    Liu, Zhipeng
    Kc, Dukka B.
    Gokaraju, Balakrishna
    Roy, Kaushik
    FUTURE INTERNET, 2020, 12 (10) : 1 - 16