ChronosGuard: A Hierarchical Machine Learning Intrusion Detection System for Modern Clouds

被引:0
|
作者
Verkerken, Miel [1 ]
Santos, Jose [1 ]
D'hooge, Laurens [1 ]
Wauters, Tim [1 ]
Volckaert, Bruno [1 ]
De Turck, Filip [1 ]
机构
[1] Univ Ghent, Imec, Dept Informat Thchnol, IDLab, B-9000 Ghent, Belgium
关键词
Security; Machine Learning; Intrusion Detection Systems; Cloud Computing; Containers; Kubernetes;
D O I
暂无
中图分类号
学科分类号
摘要
Traditional Intrusion Detection Systems (IDSs) have been a cornerstone of network security for many years. Nevertheless, with the advent of containerized applications in the last few years, there is a growing need to understand how intrusion detection can adapt to these dynamic environments. This paper presents ChronosGuard, a hierarchical machine learning (ML) IDS designed for containerized environments. ChronosGuard's adaptable architecture consists of multiple components, each optimized for deployment in varying configurations ranging from monolithic to micro-service architectures. The performance impact of various factors such as network topology, workload orchestration, and deployment strategies has been assessed through extensive experiments concerning the scalability and resource utilization of ChronosGuard. Results show the effective prioritization of benign traffic of up to 85% compared to malicious traffic, the negligible impact of small network delays on performance metrics, and up to 10% decrease in response times with network-aware orchestration for complex deployment configurations. This study introduces a robust, containerized IDS that can be easily adapted to meet various operational needs, ranging from a full privacy-preserving local deployment to a scalable cloud deployment but also provides foundational insights for future research into optimizing containerized security solutions.
引用
收藏
页数:9
相关论文
共 50 条
  • [41] Machine Learning and Deep Learning Architectures for Intrusion Detection System (IDS): A Survey
    Thankappan, Manesh
    Narayanan, Nikhil
    Sanaj, M.S.
    Manoj, Anusha
    Menon, Aravind P.
    Gokul Krishna, M.
    2024 1st International Conference on Trends in Engineering Systems and Technologies, ICTEST 2024, 2024,
  • [42] Intrusion detection by machine learning: A review
    Tsai, Chih-Fong
    Hsu, Yu-Feng
    Lin, Chia-Ying
    Lin, Wei-Yang
    EXPERT SYSTEMS WITH APPLICATIONS, 2009, 36 (10) : 11994 - 12000
  • [43] Effective intrusion detection model through the combination of a signature-based intrusion detection system and a machine learning-based intrusion detection system
    Weon, Ill-Young
    Song, Doo Heon
    Lee, Chang-Hoon
    JOURNAL OF INFORMATION SCIENCE AND ENGINEERING, 2006, 22 (06) : 1447 - 1464
  • [44] Explainable Machine Learning for Intrusion Detection
    Bellegdi, Sameh
    Selamat, Ali
    Olatunji, Sunday O.
    Fujita, Hamido
    Krejcar, Ondfrej
    ADVANCES AND TRENDS IN ARTIFICIAL INTELLIGENCE: THEORY AND APPLICATIONS, IEA-AIE 2024, 2024, 14748 : 122 - 134
  • [45] A Machine Learning Based Intrusion Impact Analysis Scheme for Clouds
    Arshad, Junaid
    Jokhio, Imran Ali
    Townend, Paul
    MEHRAN UNIVERSITY RESEARCH JOURNAL OF ENGINEERING AND TECHNOLOGY, 2012, 31 (01) : 107 - 118
  • [46] CascadMLIDS: A Cascaded Machine Learning Framework for Intrusion Detection System in VANET
    Dhar, Argha Chandra
    Roy, Arna
    Akhand, M. A. H.
    Kamal, Md Abdus Samad
    ELECTRONICS, 2023, 12 (18)
  • [47] An Intrusion Detection System Based on Machine Learning for CAN-Bus
    Tian, Daxin
    Li, Yuzhou
    Wang, Yunpeng
    Duan, Xuting
    Wang, Congyu
    Wang, Wenyang
    Hui, Rong
    Guo, Peng
    INDUSTRIAL NETWORKS AND INTELLIGENT SYSTEMS, INISCOM 2017, 2018, 221 : 285 - 294
  • [48] Intelligent Intrusion Detection System Through Combined and Optimized Machine Learning
    Shah, Syed Ali Raza
    Issac, Biju
    Jacob, Seibu Mary
    INTERNATIONAL JOURNAL OF COMPUTATIONAL INTELLIGENCE AND APPLICATIONS, 2018, 17 (02)
  • [49] Machine Learning-Based Intrusion Detection System For Healthcare Data
    Balyan, Amit Kumar
    Ahuja, Sachin
    Sharma, Sanjeev Kumar
    Lilhore, Umesh Kumar
    PROCEEDINGS OF 3RD IEEE CONFERENCE ON VLSI DEVICE, CIRCUIT AND SYSTEM (IEEE VLSI DCS 2022), 2022, : 290 - 294
  • [50] Intelligent machine learning approach for cids—cloud intrusion detection system
    Sowmya, T.
    Muneeswari, G.
    Lecture Notes on Data Engineering and Communications Technologies, 2021, 66 : 873 - 885