Machine Learning Based Intrusion Detection System for Software Defined Networks

被引:0
作者
Abubakar, Atiku [1 ]
Pranggono, Bernardi [1 ]
机构
[1] Sheffield Hallam Univ, Dept Engn & Math, Sheffield S1 1WB, S Yorkshire, England
来源
2017 SEVENTH INTERNATIONAL CONFERENCE ON EMERGING SECURITY TECHNOLOGIES (EST) | 2017年
关键词
Software-defined Network; Intrusion Detection System; OpenFlow; Machine Learning; Neural Network;
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Software-Defined Networks (SDN) is an emerging area that promises to change the way we design, build, and operate network architecture. It tends to shift from traditional network architecture of proprietary based to open and programmable network architecture. However, this new innovative and improved technology also brings another security burden into the network architecture, with existing and emerging security threats. The network vulnerability has become more open to intruders: the focus is now shifted to a single point of failure where the central controller is a prime target. Therefore, integration of intrusion detection system (IDS) into the SDN architecture is essential to provide a network with attack countermeasure. The work designed and developed a virtual testbed that simulates the processes of the real network environment, where a star topology is created with hosts and servers connected to the OpenFlow OVS-switch. Signature-based Snort IDS is deployed for traffic monitoring and attack detection, by mirroring the traffic destine to the servers. The vulnerability assessment shows possible attacks threat exist in the network architecture and effectively contain by Snort IDS except for the few which the suggestion is made for possible mitigation. In order to provide scalable threat detection in the architecture, a flow-based IDS model is developed. A flow-based anomaly detection is implemented with machine learning to overcome the limitation of signature-based IDS. The results show positive improvement for detection of almost all the possible attacks in SDN environment with our pattern recognition of neural network for machine learning using our trained model with over 97% accuracy.
引用
收藏
页码:138 / 143
页数:6
相关论文
共 11 条
[1]  
[Anonymous], 2009, P 2 IEEE INT C COMP
[2]  
Benton K, 2013, P 2 ACM SIGCOMM WORK
[3]   Predicting the Impact of Multiwalled Carbon Nanotubes on the Cement Hydration Products and Durability of Cementitious Matrix Using Artificial Neural Network Modeling Technique [J].
Fakhim, Babak ;
Hassani, Abolfazl ;
Rashidi, Alimorad ;
Ghodousi, Parviz .
SCIENTIFIC WORLD JOURNAL, 2013,
[4]  
Hendrik F., NSLKDD DATASET
[5]  
Hettich S. D., UCI KDD ARCH
[6]   Software-Defined Networking: A Comprehensive Survey [J].
Kreutz, Diego ;
Ramos, Fernando M. V. ;
Verissimo, Paulo Esteves ;
Rothenberg, Christian Esteve ;
Azodolmolky, Siamak ;
Uhlig, Steve .
PROCEEDINGS OF THE IEEE, 2015, 103 (01) :14-76
[7]  
Manandhar P., 2014, PRACTICAL APPROACH A
[8]  
Pranggono B., 2014, STATE ART INTRUSION, P115
[9]  
Scott S., 2015, COMMUNICATIONS SURVE, V18, P1
[10]   Are We Ready for SDN? Implementation Challenges for Software-Defined Networks [J].
Sezer, Sakir ;
Scott-Hayward, Sandra ;
Chouhan, Pushpinder Kaur ;
Fraser, Barbara ;
Lake, David ;
Finnegan, Jim ;
Viljoen, Niel ;
Miller, Marc ;
Rao, Navneet .
IEEE COMMUNICATIONS MAGAZINE, 2013, 51 (07) :36-43