A Deep Transfer Learning Approach for Flow-Based Intrusion Detection in SDN-Enabled Network

被引:1
|
作者
Phan The Duy [1 ,2 ]
Nghi Hoang Khoa [1 ,2 ]
Hoang Hiep [1 ,2 ]
Nguyen Ba Tuan [1 ,2 ]
Hien Do Hoang [1 ,2 ]
Do Thi Thu Hien [1 ,2 ]
Van-Hau Pham [1 ,2 ]
机构
[1] Univ Informat Technol, Informat Secur Lab, Ho Chi Minh City, Vietnam
[2] Vietnam Natl Univ, Ho Chi Minh City, Vietnam
关键词
Intrusion detection; deep transfer learning; Software-defined; Networking; SDN; image-based attack detection;
D O I
10.3233/FAIA210031
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Revolutionizing operation model of traditional network in programmability, scalability, and orchestration, Software-Defined Networking (SDN) has considered as a novel network management approach for a massive network with heterogeneous devices. However, it is also highly susceptible to security attacks like conventional network. Inspired from the success of different machine learning algorithms in other domains, many intrusion detection systems (IDS) are presented to identify attacks aiming to harm the network. In this paper, leveraging the flow-based nature of SDN, we introduce DeepFlowIDS, a deep learning (DL)-based approach for anomaly detection using the flow analysis method in SDN. Furthermore, instead of using a lot of network properties, we only utilize essential characteristics of traffic flows to analyze with deep neural networks in IDS. This is to reduce the computational and time cost of attack traffic detection. Besides, we also study the practical benefits of applying deep transfer learning from computer vision to intrusion detection. This method can inherit the knowledge of an effective DL model from other contexts to resolve another task in cybersecurity. Our DL-based IDSs are built and trained with the NSL-KDD and CICIDS2018 dataset in both fine-tuning and feature extractor strategy of transfer learning. Then, it is integrated with the SDN controller to analyze traffic flows retrieved from OpenFlow statistics to recognize the anomaly action in the network.
引用
收藏
页码:327 / 339
页数:13
相关论文
共 50 条
  • [41] Reinforcement Learning Based Seamless Handover Algorithm in SDN-Enabled WLAN
    Lei, Jianjun
    Liu, Xin
    Wang, Ying
    Zhao, Xunwei
    Gai, Ping
    [J]. WIRELESS ALGORITHMS, SYSTEMS, AND APPLICATIONS, WASA 2021, PT III, 2021, 12939 : 318 - 326
  • [42] Dependable Intrusion Detection System for IoT: A Deep Transfer Learning Based Approach
    Mehedi, Sk Tanzir
    Anwar, Adnan
    Rahman, Ziaur
    Ahmed, Kawsar
    Islam, Rafiqul
    [J]. IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2023, 19 (01) : 1006 - 1017
  • [43] Energy-aware task scheduling and offloading using deep reinforcement learning in SDN-enabled IoT network
    Sellami, Bassem
    Hakiri, Akram
    Yahia, Sadok Ben
    Berthou, Pascal
    [J]. Computer Networks, 2022, 210
  • [44] An Intelligent SDN-IoT Enabled Intrusion Detection System for Healthcare Systems Using a Hybrid Deep Learning and Machine Learning Approach
    R Arthi
    S Krishnaveni
    Sherali Zeadally
    [J]. China Communications, 2024, 21 (10) : 267 - 287
  • [45] An intelligent SDN-IoT enabled intrusion detection system for healthcare systems using a hybrid deep learning and machine learning approach
    Arthi, R.
    Krishnaveni, S.
    Zeadally, Sherali
    [J]. CHINA COMMUNICATIONS, 2024, : 1 - 21
  • [46] Review of Botnet Attack Detection in SDN-Enabled IoT Using Machine Learning
    Negera, Worku Gachena
    Schwenker, Friedhelm
    Debelee, Taye Girma
    Melaku, Henock Mulugeta
    Ayano, Yehualashet Megeresa
    [J]. SENSORS, 2022, 22 (24)
  • [47] A resource allocation deep active learning based on load balancer for network intrusion detection in SDN sensors
    Ahmed, Usman
    Lin, Jerry Chun-Wei
    Srivastava, Gautam
    [J]. COMPUTER COMMUNICATIONS, 2022, 184 : 56 - 63
  • [48] Network-Aware SDN Load Balancer with Deep Active Learning based Intrusion Detection Model
    Ahmed, Usman
    Lin, Jerry Chun-Wei
    Srivastava, Gautam
    [J]. 2021 INTERNATIONAL JOINT CONFERENCE ON NEURAL NETWORKS (IJCNN), 2021,
  • [49] Real-Time and Resilient Intrusion Detection: A Flow-Based Approach
    Hofstede, Rick
    Pras, Aiko
    [J]. DEPENDABLE NETWORKS AND SERVICES, 2012, 7279 : 109 - 112
  • [50] ZeekFlow: Deep Learning-Based Network Intrusion Detection a Multimodal Approach
    Giagkos, Dimitrios
    Kompougias, Orestis
    Litke, Antonis
    Papadakis, Nikolaos
    [J]. COMPUTER SECURITY. ESORICS 2023 INTERNATIONAL WORKSHOPS, CPS4CIP, PT II, 2024, 14399 : 409 - 425