Applying Transfer Learning Approaches for Intrusion Detection in Software-Defined Networking

被引:5
|
作者
Chuang, Hsiu-Min [1 ]
Ye, Li-Jyun [2 ]
机构
[1] Chung Yuan Christian Univ, Dept Informat & Comp Engn, Taoyuan City 320, Taiwan
[2] Natl Def Univ, Chung Cheng Inst Technol, Dept Comp Sci & Informat Engn, Taoyuan City 335, Taiwan
关键词
transfer learning; meta-learning; intrusion detection; software-defined networking;
D O I
10.3390/su15129395
中图分类号
X [环境科学、安全科学];
学科分类号
08 ; 0830 ;
摘要
In traditional network management, the configuration of routing policies and associated settings on individual routers and switches was performed manually, incurring a considerable cost. By centralizing network management, software-defined networking (SDN) technology has reduced hardware construction costs and increased flexibility. However, this centralized architecture renders information security vulnerable to network attacks, making intrusion detection in the SDN environment crucial. Machine-learning approaches have been widely used for intrusion detection recently. However, critical issues such as unknown attacks, insufficient data, and class imbalance may significantly affect the performance of typical machine learning. We addressed these problems and proposed a transfer-learning method based on the SDN environment. The following experimental results showed that our method outperforms typical machine learning methods. (1) our model achieved a F1-score of 0.71 for anomaly detection for unknown attacks; (2) for small samples, our model achieved a F1-score of 0.98 for anomaly detection and a F1-score of 0.51 for attack types identification; (3) for class imbalance, our model achieved an F1-score of 1.00 for anomaly detection and 0.91 for attack type identification. In addition, our model required 15,230 seconds (4 h 13 m 50 s) for training, ranking second among the six models when considering both performance and efficiency. In future studies, we plan to combine sampling techniques with few-shot learning to improve the performance of minority classes in class imbalance scenarios.
引用
收藏
页数:24
相关论文
共 50 条
  • [1] Applying modified golden jackal optimization to intrusion detection for Software-Defined Networking
    Qiu, Feng
    Xu, Hui
    Li, Fukui
    [J]. ELECTRONIC RESEARCH ARCHIVE, 2024, 32 (01): : 418 - 444
  • [2] An Efficient Intrusion Detection Framework in Software-Defined Networking for Cybersecurity Applications
    Alshammri, Ghalib H.
    Samha, Amani K.
    Hemdan, Ezz El-Din
    Amoon, Mohammed
    El-Shafai, Walid
    [J]. CMC-COMPUTERS MATERIALS & CONTINUA, 2022, 72 (02): : 3529 - 3548
  • [3] Software-Defined Networking approaches for intrusion response in Industrial Control Systems: A survey
    Etxezarreta, Xabier
    Garitano, Inaki
    Iturbe, Mikel
    Zurutuza, Urko
    [J]. INTERNATIONAL JOURNAL OF CRITICAL INFRASTRUCTURE PROTECTION, 2023, 42
  • [4] Applying Software-Defined Networking to the Telecom Domain
    Hampel, Georg
    Steiner, Moritz
    Bu, Tian
    [J]. 2013 IEEE CONFERENCE ON COMPUTER COMMUNICATIONS WORKSHOPS (INFOCOM WKSHPS), 2013, : 133 - 138
  • [5] Applying Software-Defined Networking to the Telecom Domain
    Hampel, Georg
    Steiner, Moritz
    Bu, Tian
    [J]. 2013 PROCEEDINGS IEEE INFOCOM, 2013, : 3339 - 3344
  • [6] Early Detection of Abnormal Attacks in Software-Defined Networking Using Machine Learning Approaches
    Chuang, Hsiu-Min
    Liu, Fanpyn
    Tsai, Chung-Hsien
    [J]. SYMMETRY-BASEL, 2022, 14 (06):
  • [7] Challenge-based collaborative intrusion detection in software-defined networking: an evaluation
    Li, Wenjuan
    Wang, Yu
    Jin, Zhiping
    Yu, Keping
    Li, Jin
    Xiang, Yang
    [J]. DIGITAL COMMUNICATIONS AND NETWORKS, 2021, 7 (02) : 257 - 263
  • [8] Challenge-based collaborative intrusion detection in software-defined networking: An evaluation
    Wenjuan Li
    Yu Wang
    Zhiping Jin
    Keping Yu
    Jin Li
    Yang Xiang
    [J]. Digital Communications and Networks, 2021, 7 (02) - 263
  • [9] FRHIDS: Federated Learning Recommender Hybrid Intrusion Detection System Model in Software-Defined Networking for Consumer Devices
    Babbar, Himanshi
    Rani, Shalli
    [J]. IEEE TRANSACTIONS ON CONSUMER ELECTRONICS, 2024, 70 (01) : 2492 - 2499
  • [10] DeepIDS: Deep Learning Approach for Intrusion Detection in Software Defined Networking
    Tuan Anh Tang
    Mhamdi, Lotfi
    McLernon, Des
    Zaidi, Syed Ali Raza
    Ghogho, Mounir
    El Moussa, Fadi
    [J]. ELECTRONICS, 2020, 9 (09) : 1 - 18