New Continual Federated Learning System for Intrusion Detection in SDN-Based Edge Computing

被引:0
|
作者
Chetouane, Ameni [1 ]
Karoui, Kamel [2 ]
机构
[1] Univ Manouba, Natl Sch Comp Sci, Manouba, Tunisia
[2] Univ Carthage, Natl Inst Appl Sci & Technol, Tunis, Tunisia
来源
关键词
continual learning; federated learning; intrusion detection; network security; security threats; software defined networking;
D O I
10.1002/cpe.8332
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Software Defined Networking (SDN) is an open network approach that has been proposed to address some of the main problems with traditional networks. However, SDN faces cybersecurity issues. To provide a network defense against attacks, an Intrusion Detection System (IDS) needs to be updated and included into the SDN architecture on a regular basis. Machine learning methods have proved effective in detecting intrusions in SDN. Moreover, these techniques pose the problem of significant computational overload and the absence of regular updates when new cyber-attacks appear. To address these issues, we propose a new SDN-based cloud intrusion detection system called Continual Federated Learning (CFL). In CFL, we modify the classical federated learning process by granting a more important and dynamic role to each participating client. On the one hand, it can trigger this process whenever a new type of intrusion is detected. On the other hand, once the new model has been identified, the customer can decide whether or not to deploy it in his network. In addition, to verify the accuracy of the CFL system, we have formally specified it by a communication protocol. This specification organizes the exchanges between the different communicating entities involved in the CFL. To verify the accuracy of this specification, we described it using the PROMELA language and checked with the associated SPIN tool. On the experimental side, we deployed this specification of the CFL system in an SDN computing environment. We defined different scenarios, and we proposed that each client decides locally to deploy or not the newly obtained intrusion detection model. The decision is based on a modified metric where we integrate the severity of the intrusions. Experimental results using private local datasets show that the proposed CFL system can efficiently and accurately detect new types of intrusions while preserving client confidentiality. Thus, it can be considered a promising system for SDN-based edge computing.
引用
收藏
页数:18
相关论文
共 50 条
  • [31] Edge-Federated Learning-Based Intelligent Intrusion Detection System for Heterogeneous Internet of Things
    Mahadik, Shalaka S.
    Pawar, Pranav M.
    Muthalagu, Raja
    IEEE ACCESS, 2024, 12 : 81736 - 81757
  • [32] A Privacy-Preserving Federated Learning System for Android Malware Detection Based on Edge Computing
    Hsu, Ruei-Hau
    Wang, Yi-Cheng
    Fan, Chun-, I
    Sun, Bo
    Ban, Tao
    Takahashi, Takeshi
    Wu, Ting-Wei
    Kao, Shang-Wei
    2020 15TH ASIA JOINT CONFERENCE ON INFORMATION SECURITY (ASIAJCIS 2020), 2020, : 128 - 136
  • [33] Analysis of Continual Learning Models for Intrusion Detection System
    Prasath, Sai
    Sethi, Kamalakanta
    Mohanty, Dinesh
    Bera, Padmalochan
    Samantaray, Subhransu Ranjan
    IEEE ACCESS, 2022, 10 : 121444 - 121464
  • [34] SDN-based IaaS for Mobile Computing
    Ekanayake, Wijaya
    Amarasinghe, Heli
    Karmouch, Ahmed
    2017 14TH IEEE ANNUAL CONSUMER COMMUNICATIONS & NETWORKING CONFERENCE (CCNC), 2017, : 179 - 184
  • [35] SDN-Based Cloud Computing Networking
    Azodolmolky, Siamak
    Wieder, Philipp
    Yahyapour, Ramin
    2013 15TH INTERNATIONAL CONFERENCE ON TRANSPARENT OPTICAL NETWORKS (ICTON 2013), 2013,
  • [36] Optimized Machine Learning-Based Intrusion Detection System for Fog and Edge Computing Environment
    Alzubi, Omar A.
    Alzubi, Jafar A.
    Alazab, Moutaz
    Alrabea, Adnan
    Awajan, Albara
    Qiqieh, Issa
    ELECTRONICS, 2022, 11 (19)
  • [37] SDN-based Edge Computing Security: Detecting and Mitigating Flow Rule Attacks
    Sen Baidya, Sonali
    Hewett, Rattikorn
    SEC'19: PROCEEDINGS OF THE 4TH ACM/IEEE SYMPOSIUM ON EDGE COMPUTING, 2019, : 364 - 370
  • [38] Online Resource Allocation for SDN-Based Mobile Edge Computing: Reinforcement Approaches
    Jiang, Huatong
    Li, Yanjun
    Gao, Meihui
    2021 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2021,
  • [39] Resource Management in SDN-Based Cloud and SDN-Based Fog Computing: Taxonomy Study
    Alomari, Amirah
    Subramaniam, Shamala K.
    Samian, Normalia
    Latip, Rohaya
    Zukarnain, Zuriati
    SYMMETRY-BASEL, 2021, 13 (05):
  • [40] Federated Deep Reinforcement Learning for Traffic Monitoring in SDN-Based IoT Networks
    Tri Gia Nguyen
    Phan, Trung, V
    Dinh Thai Hoang
    Nguyen, Tu N.
    So-In, Chakchai
    IEEE TRANSACTIONS ON COGNITIVE COMMUNICATIONS AND NETWORKING, 2021, 7 (04) : 1048 - 1065