Explainable Security in SDN-Based IoT Networks

被引:25
|
作者
Sarica, Alper Kaan [1 ]
Angin, Pelin [1 ]
机构
[1] Middle East Tech Univ, Dept Comp Engn, TR-06800 Ankara, Turkey
关键词
SDN; security; machine learning; 5G; IoT; intrusion detection; INTRUSION DETECTION; SOFTWARE; FRAMEWORK; ATTACK;
D O I
10.3390/s20247326
中图分类号
O65 [分析化学];
学科分类号
070302 ; 081704 ;
摘要
The significant advances in wireless networks in the past decade have made a variety of Internet of Things (IoT) use cases possible, greatly facilitating many operations in our daily lives. IoT is only expected to grow with 5G and beyond networks, which will primarily rely on software-defined networking (SDN) and network functions virtualization for achieving the promised quality of service. The prevalence of IoT and the large attack surface that it has created calls for SDN-based intelligent security solutions that achieve real-time, automated intrusion detection and mitigation. In this paper, we propose a real-time intrusion detection and mitigation solution for SDN, which aims to provide autonomous security in the high-traffic IoT networks of the 5G and beyond era, while achieving a high degree of interpretability by human experts. The proposed approach is built upon automated flow feature extraction and classification of flows while using random forest classifiers at the SDN application layer. We present an SDN-specific dataset that we generated for IoT and provide results on the accuracy of intrusion detection in addition to performance results in the presence and absence of our proposed security mechanism. The experimental results demonstrate that the proposed security approach is promising for achieving real-time, highly accurate detection and mitigation of attacks in SDN-managed IoT networks.
引用
收藏
页码:1 / 30
页数:30
相关论文
共 50 条
  • [31] SDN-based dynamic resource management and scheduling for cognitive industrial IoT
    Chandramohan, S.
    Senthilkumaran, M.
    INTERNATIONAL JOURNAL OF INTELLIGENT COMPUTING AND CYBERNETICS, 2022, 15 (03) : 425 - 437
  • [32] Detection and mitigation of attacks in SDN-based IoT network using SVM
    Mishra, Shailendra
    INTERNATIONAL JOURNAL OF COMPUTER APPLICATIONS IN TECHNOLOGY, 2021, 65 (03) : 270 - 281
  • [33] Dynamic adjustment for proactive flow installation mechanism in SDN-based IoT
    Cai, Yun-Zhan
    Wang, Yu-Ting
    Tsai, Meng-Hsun
    COMPUTER NETWORKS, 2021, 194
  • [34] Automatic, verifiable and optimized policy-based security enforcement for SDN-aware IoT networks
    Bringhenti, Daniele
    Yusupov, Jalolliddin
    Zarca, Alejandro Molina
    Valenza, Fulvio
    Sisto, Riccardo
    Bernabe, Jorge Bernal
    Skarmeta, Antonio
    COMPUTER NETWORKS, 2022, 213
  • [35] An overview of QoS-aware load balancing techniques in SDN-based IoT networks
    Rostami, Mohammad
    Goli-Bidgoli, Salman
    JOURNAL OF CLOUD COMPUTING-ADVANCES SYSTEMS AND APPLICATIONS, 2024, 13 (01):
  • [36] Alleviating Heterogeneity in SDN-IoT Networks to Maintain QoS and Enhance Security
    Sood, Keshav
    Karmakar, Kallol Krishna
    Yu, Shui
    Varadharajan, Vijay
    Pokhrel, Shiva Raj
    Xiang, Yong
    IEEE INTERNET OF THINGS JOURNAL, 2020, 7 (07): : 5964 - 5975
  • [37] An SDN-based Hybrid-DL-driven cognitive intrusion detection system for IoT ecosystem
    Wahab, Fazal
    Shah, Anwar
    Khan, Imran
    Ali, Bahar
    Adnan, Muhammad
    COMPUTERS & ELECTRICAL ENGINEERING, 2024, 119
  • [38] FMDADM: A Multi-Layer DDoS Attack Detection and Mitigation Framework Using Machine Learning for Stateful SDN-Based IoT Networks
    Khedr, Walid I.
    Gouda, Ameer E.
    Mohamed, Ehab R.
    IEEE ACCESS, 2023, 11 : 28934 - 28954
  • [39] A Survey on Emerging SDN and NFV Security Mechanisms for IoT Systems
    Farris, Ivan
    Taleb, Tarik
    Khettab, Yacine
    Song, Jaeseung
    IEEE COMMUNICATIONS SURVEYS AND TUTORIALS, 2019, 21 (01): : 812 - 837
  • [40] Periodic Subflow-based Proactive Flow Installation Mechanism in SDN-based IoT
    Cai, Yun-Zhan
    Tien, Shao-Ku
    Wang, Yu-Ting
    Tsai, Meng-Hsun
    2020 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2020,