Explainable Security in SDN-Based IoT Networks

被引:25
|
作者
Sarica, Alper Kaan [1 ]
Angin, Pelin [1 ]
机构
[1] Middle East Tech Univ, Dept Comp Engn, TR-06800 Ankara, Turkey
关键词
SDN; security; machine learning; 5G; IoT; intrusion detection; INTRUSION DETECTION; SOFTWARE; FRAMEWORK; ATTACK;
D O I
10.3390/s20247326
中图分类号
O65 [分析化学];
学科分类号
070302 ; 081704 ;
摘要
The significant advances in wireless networks in the past decade have made a variety of Internet of Things (IoT) use cases possible, greatly facilitating many operations in our daily lives. IoT is only expected to grow with 5G and beyond networks, which will primarily rely on software-defined networking (SDN) and network functions virtualization for achieving the promised quality of service. The prevalence of IoT and the large attack surface that it has created calls for SDN-based intelligent security solutions that achieve real-time, automated intrusion detection and mitigation. In this paper, we propose a real-time intrusion detection and mitigation solution for SDN, which aims to provide autonomous security in the high-traffic IoT networks of the 5G and beyond era, while achieving a high degree of interpretability by human experts. The proposed approach is built upon automated flow feature extraction and classification of flows while using random forest classifiers at the SDN application layer. We present an SDN-specific dataset that we generated for IoT and provide results on the accuracy of intrusion detection in addition to performance results in the presence and absence of our proposed security mechanism. The experimental results demonstrate that the proposed security approach is promising for achieving real-time, highly accurate detection and mitigation of attacks in SDN-managed IoT networks.
引用
收藏
页码:1 / 30
页数:30
相关论文
共 50 条
  • [21] Privacy-Aware Switch-Controller Mapping in SDN-Based IoT Networks
    Sridharan, Vignesh
    Liyanage, Kushan Sudheera Kalupahana
    Gurusamy, Mohan
    2020 INTERNATIONAL CONFERENCE ON COMMUNICATION SYSTEMS & NETWORKS (COMSNETS), 2020,
  • [22] Intelligent SDN to enhance security in IoT networks
    Ibrahim, Safi
    Youssef, Aya M.
    Shoman, Mahmoud
    Taha, Sanaa
    EGYPTIAN INFORMATICS JOURNAL, 2024, 28
  • [23] An SDN-based technique for reducing handoff times in WiFi networks
    Manzoor, Hira
    Manzoor, Sohaib
    Ali, Noman
    Sajid, Muhammad
    Menhas, Muhammad Ilyas
    Hei, Xiaojun
    INTERNATIONAL JOURNAL OF COMMUNICATION SYSTEMS, 2021, 34 (16)
  • [24] Countermeasure SDN-based IoT threats using blockchain multicontroller
    Janani K.
    Ramamoorthy S.
    International Journal of High Performance Systems Architecture, 2023, 11 (03) : 117 - 128
  • [25] Secure and Reliable Data Transmission in SDN-based Backend Networks of Industrial IoT
    Li, Tao
    Hofmann, Christoph
    Franz, Elke
    PROCEEDINGS OF THE 2020 IEEE 45TH CONFERENCE ON LOCAL COMPUTER NETWORKS (LCN 2020), 2020, : 365 - 368
  • [26] R-IDPS: Real Time SDN-Based IDPS System for IoT Security
    Mazhar, Noman
    Saleh, Rosli
    Zaba, Reza
    Zeeshan, Muhammad
    Hameed, M. Muzaffar
    Khan, Nauman
    CMC-COMPUTERS MATERIALS & CONTINUA, 2022, 73 (02): : 3099 - 3118
  • [27] A Design for SDN-Based Identifier-Locator Separation Architecture on IoT Networks
    Lee, Chan Haeng
    Park, Ji Su
    APPLIED SCIENCES-BASEL, 2020, 10 (06):
  • [28] TD-RA policy-enforcement framework for an SDN-based IoT architecture
    Lahlou, Sara
    Moukafih, Youness
    Sebbar, Anass
    Zkik, Karim
    Boulmalf, Mohammed
    Ghogho, Mounir
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2022, 204
  • [29] Deep Recurrent Neural Network for Intrusion Detection in SDN-based Networks
    Tang, Tuan A.
    Mhamdi, Lotfi
    McLernon, Des
    Zaidi, Syed Ali Raza
    Ghogho, Mounir
    2018 4TH IEEE CONFERENCE ON NETWORK SOFTWARIZATION AND WORKSHOPS (NETSOFT), 2018, : 202 - 206
  • [30] SDN based architecture for IoT and improvement of the security
    Flauzac, Olivier
    Gonzalez, Carlos
    Hachani, Abdelhak
    Nolot, Florent
    2015 IEEE 29TH INTERNATIONAL CONFERENCE ON ADVANCED INFORMATION NETWORKING AND APPLICATIONS WORKSHOPS WAINA 2015, 2015, : 688 - 693