Intrusion Detection Framework for Industrial Internet of Things Using Software Defined Network

被引:19
作者
Alshahrani, Hani [1 ]
Khan, Attiya [2 ]
Rizwan, Muhammad [3 ]
Reshan, Mana Saleh Al [4 ]
Sulaiman, Adel [1 ]
Shaikh, Asadullah [4 ]
机构
[1] Najran Univ, Coll Comp Sci & Informat Syst, Dept Comp Sci, Najran 61441, Saudi Arabia
[2] Kinnaird Coll Women, Dept Comp Sci, Lahore 54890, Pakistan
[3] Univ Derby, Coll Engn & Technol, Derby DE22 3AW, England
[4] Najran Univ, Coll Comp Sci & Informat Syst, Dept Informat Syst, Najran 61441, Saudi Arabia
关键词
industrial internet of things (IIoT); software-defined network; intrusion detection; machine learning;
D O I
10.3390/su15119001
中图分类号
X [环境科学、安全科学];
学科分类号
08 ; 0830 ;
摘要
The Industrial Internet of Things (IIoT) refers to the employment of the Internet of Things in industrial management, where a substantial number of machines and devices are linked and synchronized with the help of software programs and third platforms to improve the overall productivity. The acquisition of the industrial IoT provides benefits that range from automation and optimization to eliminating manual processes and improving overall efficiencies, but security remains to be forethought. The absence of reliable security mechanisms and the magnitude of security features are significant obstacles to enhancing IIoT security. Over the last few years, alarming attacks have been witnessed utilizing the vulnerabilities of the IIoT network devices. Moreover, the attackers can also sink deep into the network by using the relationships amidst the vulnerabilities. Such network security threats cause industries and businesses to suffer financial losses, reputational damage, and theft of important information. This paper proposes an SDN-based framework using machine learning techniques for intrusion detection in an industrial IoT environment. SDN is an approach that enables the network to be centrally and intelligently controlled through software applications. In our framework, the SDN controller employs a machine-learning algorithm to monitor the behavior of industrial IoT devices and networks by analyzing traffic flow data and ultimately determining the flow rules for SDN switches. We use SVM and Decision Tree classification models to analyze our framework's network intrusion and attack detection performance. The results indicate that the proposed framework can detect attacks in industrial IoT networks and devices with an accuracy of 99.7%.
引用
收藏
页数:18
相关论文
共 32 条
[1]   Identification of malicious activities in industrial internet of things based on deep learning models [J].
AL-Hawawreh, Muna ;
Moustafa, Nour ;
Sitnikova, Elena .
JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2018, 41 :1-11
[2]   Machine Learning Techniques to Detect a DDoS Attack in SDN: A Systematic Review [J].
Ali, Tariq Emad ;
Chong, Yung-Wey ;
Manickam, Selvakumar .
APPLIED SCIENCES-BASEL, 2023, 13 (05)
[3]   Cybersecurity in industrial control systems: Issues, technologies, and challenges [J].
Asghar, Muhammad Rizwan ;
Hu, Qinwen ;
Zeadally, Sherali .
COMPUTER NETWORKS, 2019, 165
[4]   Forensic readiness of industrial control systems under stealthy attacks [J].
Azzam, Mazen ;
Pasquale, Liliana ;
Provan, Gregory ;
Nuseibeh, Bashar .
COMPUTERS & SECURITY, 2023, 125
[5]  
Bakhshi Z, 2018, IEEE WIREL COMMUNN, P173, DOI 10.1109/WCNCW.2018.8368997
[6]   IoT Elements, Layered Architectures and Security Issues: A Comprehensive Survey [J].
Burhan, Muhammad ;
Rehman, Rana Asif ;
Khan, Bilal ;
Kim, Byung-Seo .
SENSORS, 2018, 18 (09)
[7]   Cryptographic Solutions for Industrial Internet-of-Things: Research Challenges and Opportunities [J].
Choo, Kim-Kwang Raymond ;
Gritzalis, Stefanos ;
Park, Jong Hyuk .
IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2018, 14 (08) :3567-3569
[8]   A New Edge Computing Architecture for IoT and Multimedia Data Management [J].
Debauche, Olivier ;
Mahmoudi, Said ;
Guttadauria, Adriano .
INFORMATION, 2022, 13 (02)
[9]   A Lightweight Authentication Mechanism for M2M Communications in Industrial IoT Environment [J].
Esfahani, Alireza ;
Mantas, Georgios ;
Matischek, Rainer ;
Saghezchi, Firooz B. ;
Rodriguez, Jonathan ;
Bicaku, Ani ;
Maksuti, Silia ;
Tauber, Markus G. ;
Schmittner, Christoph ;
Bastos, Joaquim .
IEEE INTERNET OF THINGS JOURNAL, 2019, 6 (01) :288-296
[10]   A Graph-Based Security Framework for Securing Industrial IoT Networks from Vulnerability Exploitations [J].
George, Gemini ;
Thampi, Sabu M. .
IEEE ACCESS, 2018, 6 :43586-43601