New Continual Federated Learning System for Intrusion Detection in SDN-Based Edge Computing

被引:0
|
作者
Chetouane, Ameni [1 ]
Karoui, Kamel [2 ]
机构
[1] Univ Manouba, Natl Sch Comp Sci, Manouba, Tunisia
[2] Univ Carthage, Natl Inst Appl Sci & Technol, Tunis, Tunisia
来源
关键词
continual learning; federated learning; intrusion detection; network security; security threats; software defined networking;
D O I
10.1002/cpe.8332
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Software Defined Networking (SDN) is an open network approach that has been proposed to address some of the main problems with traditional networks. However, SDN faces cybersecurity issues. To provide a network defense against attacks, an Intrusion Detection System (IDS) needs to be updated and included into the SDN architecture on a regular basis. Machine learning methods have proved effective in detecting intrusions in SDN. Moreover, these techniques pose the problem of significant computational overload and the absence of regular updates when new cyber-attacks appear. To address these issues, we propose a new SDN-based cloud intrusion detection system called Continual Federated Learning (CFL). In CFL, we modify the classical federated learning process by granting a more important and dynamic role to each participating client. On the one hand, it can trigger this process whenever a new type of intrusion is detected. On the other hand, once the new model has been identified, the customer can decide whether or not to deploy it in his network. In addition, to verify the accuracy of the CFL system, we have formally specified it by a communication protocol. This specification organizes the exchanges between the different communicating entities involved in the CFL. To verify the accuracy of this specification, we described it using the PROMELA language and checked with the associated SPIN tool. On the experimental side, we deployed this specification of the CFL system in an SDN computing environment. We defined different scenarios, and we proposed that each client decides locally to deploy or not the newly obtained intrusion detection model. The decision is based on a modified metric where we integrate the severity of the intrusions. Experimental results using private local datasets show that the proposed CFL system can efficiently and accurately detect new types of intrusions while preserving client confidentiality. Thus, it can be considered a promising system for SDN-based edge computing.
引用
收藏
页数:18
相关论文
共 50 条
  • [21] DGA-based Intrusion Detection System using Federated Learning Method on Edge Devices
    Nguyen Ngoc Minh
    Pham Trung Hieu
    Vu Hai
    Nguyen Huu Thanh
    38TH INTERNATIONAL CONFERENCE ON INFORMATION NETWORKING, ICOIN 2024, 2024, : 509 - 514
  • [22] Federated Learning-based Intrusion Detection Framework for Internet of Things and Edge Computing backed Critical Infrastructure
    Meng, Ruofei
    Shah, Awais Aziz
    Jamshed, Muhammad Ali
    Pezaros, Dimitrios
    2024 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS WORKSHOPS, ICC WORKSHOPS 2024, 2024, : 810 - 815
  • [23] Federated Reinforcement Learning for Automatic Control in SDN-based IoT Environments
    Lim, Hyun-Kyo
    Kim, Ju-Bong
    Kim, Sang-Youn
    Han, Youn-Hee
    11TH INTERNATIONAL CONFERENCE ON ICT CONVERGENCE: DATA, NETWORK, AND AI IN THE AGE OF UNTACT (ICTC 2020), 2020, : 1868 - 1873
  • [24] A Multi-Class Intrusion Detection System Based on Continual Learning
    Oikonomou, Chrysoula
    Iliopoulos, Ilias
    Ioannidis, Dimosthenis
    Tzovaras, Dimitrios
    2023 IEEE INTERNATIONAL CONFERENCE ON CYBER SECURITY AND RESILIENCE, CSR, 2023, : 86 - 91
  • [25] Blockchain-Enabled Federated Learning for Enhanced Collaborative Intrusion Detection in Vehicular Edge Computing
    El Houda, Zakaria Abou
    Moudoud, Hajar
    Brik, Bouziane
    Khoukhi, Lyes
    IEEE TRANSACTIONS ON INTELLIGENT TRANSPORTATION SYSTEMS, 2024, 25 (07) : 7661 - 7672
  • [26] Federated Learning based Intrusion Detection System for Satellite Communication
    Uddin, Ryhan
    Kumar, Sathish
    2023 IEEE COGNITIVE COMMUNICATIONS FOR AEROSPACE APPLICATIONS WORKSHOP, CCAAW, 2023,
  • [27] POSTER: Advancing Federated Edge Computing with Continual Learning for Secure and Efficient Performance
    Chen, Chunlu
    Wang, Kevin I-Kai
    Li, Peng
    Sakurai, Kouichi
    APPLIED CRYPTOGRAPHY AND NETWORK SECURITY WORKSHOPS, ACNS 2023 SATELLITE WORKSHOPS, ADSC 2023, AIBLOCK 2023, AIHWS 2023, AIOTS 2023, CIMSS 2023, CLOUD S&P 2023, SCI 2023, SECMT 2023, SIMLA 2023, 2023, 13907 : 685 - 689
  • [28] Deep Recurrent Neural Network for Intrusion Detection in SDN-based Networks
    Tang, Tuan A.
    Mhamdi, Lotfi
    McLernon, Des
    Zaidi, Syed Ali Raza
    Ghogho, Mounir
    2018 4TH IEEE CONFERENCE ON NETWORK SOFTWARIZATION AND WORKSHOPS (NETSOFT), 2018, : 202 - 206
  • [29] RETRACTION: Retraction: A distributed SDN-based intrusion detection system for IoT using optimized forests
    Luo, K.
    PLOS ONE, 2024, 19 (10):
  • [30] An SDN-based Hybrid-DL-driven cognitive intrusion detection system for IoT ecosystem
    Wahab, Fazal
    Shah, Anwar
    Khan, Imran
    Ali, Bahar
    Adnan, Muhammad
    COMPUTERS & ELECTRICAL ENGINEERING, 2024, 119