A Deep Transfer Learning Approach for Flow-Based Intrusion Detection in SDN-Enabled Network

被引:1
|
作者
Phan The Duy [1 ,2 ]
Nghi Hoang Khoa [1 ,2 ]
Hoang Hiep [1 ,2 ]
Nguyen Ba Tuan [1 ,2 ]
Hien Do Hoang [1 ,2 ]
Do Thi Thu Hien [1 ,2 ]
Van-Hau Pham [1 ,2 ]
机构
[1] Univ Informat Technol, Informat Secur Lab, Ho Chi Minh City, Vietnam
[2] Vietnam Natl Univ, Ho Chi Minh City, Vietnam
关键词
Intrusion detection; deep transfer learning; Software-defined; Networking; SDN; image-based attack detection;
D O I
10.3233/FAIA210031
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Revolutionizing operation model of traditional network in programmability, scalability, and orchestration, Software-Defined Networking (SDN) has considered as a novel network management approach for a massive network with heterogeneous devices. However, it is also highly susceptible to security attacks like conventional network. Inspired from the success of different machine learning algorithms in other domains, many intrusion detection systems (IDS) are presented to identify attacks aiming to harm the network. In this paper, leveraging the flow-based nature of SDN, we introduce DeepFlowIDS, a deep learning (DL)-based approach for anomaly detection using the flow analysis method in SDN. Furthermore, instead of using a lot of network properties, we only utilize essential characteristics of traffic flows to analyze with deep neural networks in IDS. This is to reduce the computational and time cost of attack traffic detection. Besides, we also study the practical benefits of applying deep transfer learning from computer vision to intrusion detection. This method can inherit the knowledge of an effective DL model from other contexts to resolve another task in cybersecurity. Our DL-based IDSs are built and trained with the NSL-KDD and CICIDS2018 dataset in both fine-tuning and feature extractor strategy of transfer learning. Then, it is integrated with the SDN controller to analyze traffic flows retrieved from OpenFlow statistics to recognize the anomaly action in the network.
引用
收藏
页码:327 / 339
页数:13
相关论文
共 50 条
  • [21] Collaborative Intrusion Detection for VANETs: A Deep Learning-Based Distributed SDN Approach
    Shu, Jiangang
    Zhou, Lei
    Zhang, Weizhe
    Du, Xiaojiang
    Guizani, Mohsen
    [J]. IEEE TRANSACTIONS ON INTELLIGENT TRANSPORTATION SYSTEMS, 2021, 22 (07) : 4519 - 4530
  • [22] A Transfer Learning Approach for Network Intrusion Detection
    Wu, Peilun
    Guo, Hui
    Buckland, Richard
    [J]. 2019 4TH IEEE INTERNATIONAL CONFERENCE ON BIG DATA ANALYTICS (ICBDA 2019), 2019, : 281 - 285
  • [23] Collision Aware Flow-Based Adaptive Resource Allocation for SDN-enabled SDM Optical Packet Switching Networks
    Hashimoto, Yuusuke
    Kubota, Kosuke
    Fujimoto, Akihiro
    Tanigawa, Yosuke
    Hirota, Yusuke
    Tode, Hideki
    [J]. 2020 EUROPEAN CONFERENCE ON OPTICAL COMMUNICATIONS (ECOC), 2020,
  • [24] Intrusion Detection Using Flow-Based Analysis of Network Traffic
    David, Jisa
    Thomas, Ciza
    [J]. ADVANCES IN NETWORKS AND COMMUNICATIONS, PT II, 2011, 132 : 391 - 399
  • [25] DLMHS: Flow-based intrusion detection system using deep learning neural network and meta-heuristic scale
    Jyothsna, V
    Prasad, Munivara K.
    GopiChand, G.
    Bhavani, Durga D.
    [J]. INTERNATIONAL JOURNAL OF COMMUNICATION SYSTEMS, 2022, 35 (10)
  • [26] Traffic Anomaly Detection and Prediction Based on SDN-enabled ICN
    Yang, Fan
    Jiang, Yun
    Pan, Tian
    E, Xinhua
    [J]. 2018 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS WORKSHOPS (ICC WORKSHOPS), 2018,
  • [27] Blockchain and Deep Learning-Based IDS for Securing SDN-Enabled Industrial IoT Environments
    Poorazad, Samira Kamali
    Benzaid, Chafika
    Taleb, Tarik
    [J]. IEEE CONFERENCE ON GLOBAL COMMUNICATIONS, GLOBECOM, 2023, : 2760 - 2765
  • [28] A Federated Learning Approach to Routing in Challenged SDN-Enabled Edge Networks
    Sacco, Alessio
    Esposito, Flavio
    Marchetto, Guido
    [J]. PROCEEDINGS OF THE 2020 6TH IEEE CONFERENCE ON NETWORK SOFTWARIZATION (NETSOFT 2020): BRIDGING THE GAP BETWEEN AI AND NETWORK SOFTWARIZATION, 2020, : 150 - 154
  • [29] A Step-Based Deep Learning Approach for Network Intrusion Detection
    Zhang, Yanyan
    Ran, Xiangjin
    [J]. CMES-COMPUTER MODELING IN ENGINEERING & SCIENCES, 2021, 128 (03): : 1231 - 1245
  • [30] Low-rate DDoS attack Detection using Deep Learning for SDN-enabled IoT Networks
    Alashhab, Abdussalam Ahmed
    Zahid, Mohd Soperi Mohd
    Muneer, Amgad
    Abdullahi, Mujaheed
    [J]. INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2022, 13 (11) : 371 - 377