DAREnsemble: Decision Tree and Rule Learner Based Ensemble for Network Intrusion Detection System

被引:17
作者
Gaikwad, Dwarkoba [1 ]
Thool, Ravindra [1 ]
机构
[1] SGGSIO Engn & Technol, Dept Comp, Vishnupuri, Nanded, India
来源
PROCEEDINGS OF FIRST INTERNATIONAL CONFERENCE ON INFORMATION AND COMMUNICATION TECHNOLOGY FOR INTELLIGENT SYSTEMS: VOL 1 | 2016年 / 50卷
关键词
Intrusion detection system; Random forest; Combination rule; Ensemble; False positive;
D O I
10.1007/978-3-319-30933-0_20
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
The Intrusion detection system is a network security application which detects anomalies and attackers. Therefore, there is a need of devising and developing a robust and reliable intrusion detection system. Different techniques of machine learning have been used to implement intrusion detection systems. Recently, ensemble of different classifiers is widely used to implement it. In ensemble method, the appropriate selection of base classifiers is a very important process. In this paper, the issues of base classifiers selection are discussed. The main goal of this experimental work is to find out the appropriate base classifiers for ensemble classifier. The best set of base classifier and the best combination rules are identified to build ensemble classifier. A new architecture, DAREnsemble, have proposed for intrusion detection system that consists of unstable base classifiers. DAREnsemble is formulated by combining the advantages of rule learners and decision trees. The performance of the proposed ensemble based classifier for intrusion detection system has evaluated in terms of false positives, root mean squared error and classification accuracy. The experimental results show that the proposed ensemble classifier for intrusion detection system exhibits lowest false positive rate with higher classification accuracy at the expense of model building time and increased complexity.
引用
收藏
页码:185 / 193
页数:9
相关论文
共 16 条
  • [1] Network Anomaly Detection: Methods, Systems and Tools
    Bhuyan, Monowar H.
    Bhattacharyya, D. K.
    Kalita, J. K.
    [J]. IEEE COMMUNICATIONS SURVEYS AND TUTORIALS, 2014, 16 (01): : 303 - 336
  • [2] Feature deduction and ensemble design of intrusion detection systems
    Chebrolu, S
    Abraham, A
    Thomas, JP
    [J]. COMPUTERS & SECURITY, 2005, 24 (04) : 295 - 307
  • [3] A hybrid network intrusion detection framework based on random forests and weighted k-means
    Elbasiony, Reda M.
    Sallam, Elsayed A.
    Eltobely, Tarek E.
    Fahmy, Mahmoud M.
    [J]. AIN SHAMS ENGINEERING JOURNAL, 2013, 4 (04) : 753 - 762
  • [4] Gaikwad D. P., 2014, INT J COMPUT SCI INF, V5, P6976
  • [5] Gaikwad D. P., 2015, INT C COMP COMM CONT
  • [6] Clustering-based ensembles for one-class classification
    Krawczyk, Bartosz
    Wozniak, Michal
    Cyganek, Boguslaw
    [J]. INFORMATION SCIENCES, 2014, 264 : 182 - 195
  • [7] Detection of distributed denial of service attacks using an ensemble of adaptive and hybrid neuro-fuzzy systems
    Kumar, P. Arun Raj
    Selvakumar, S.
    [J]. COMPUTER COMMUNICATIONS, 2013, 36 (03) : 303 - 319
  • [8] Creditability-based weighted voting for reducing false positives and negatives in intrusion detection
    Lin, Ying-Dar
    Lai, Yuan-Cheng
    Ho, Cheng-Yuan
    Tai, Wei-Hsuan
    [J]. COMPUTERS & SECURITY, 2013, 39 : 460 - 474
  • [9] Combining integrated sampling with SVM ensembles for learning from imbalanced datasets
    Liu, Yang
    Yu, Xiaohui
    Huang, Jimmy Xiangji
    An, Aijun
    [J]. INFORMATION PROCESSING & MANAGEMENT, 2011, 47 (04) : 617 - 631
  • [10] Improving malware detection by applying multi-inducer ensemble
    Menahem, Eitan
    Shabtai, Asaf
    Rokach, Lior
    Elovici, Yuval
    [J]. COMPUTATIONAL STATISTICS & DATA ANALYSIS, 2009, 53 (04) : 1483 - 1494