Cloud Based Intrusion Detection and Prevention System for Industrial Control Systems Using Software Defined Networking

被引:0
|
作者
Brugman, Jonathon [1 ]
Khan, Mohammed [2 ]
Kasera, Sneha [1 ]
Parvania, Masood [1 ,2 ]
机构
[1] Univ Utah, Sch Comp, Salt Lake City, UT 84112 USA
[2] Univ Utah, Elect & Comp Engn, Salt Lake City, UT 84112 USA
来源
关键词
Network function virtualization; software defined networking; microgrid; cyber security; intrusion detection and prevention; SECURITY; ATTACKS;
D O I
10.1109/rws47064.2019.8971825
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Industrial control systems (ICS) are becoming more integral to modern life as they are being integrated into critical infrastructure. These systems typically lack application layer encryption and the placement of common network intrusion services have large blind spots. We propose the novel architecture, Cloud Based Intrusion Detection and Prevention System (CB-IDPS), to detect and prevent threats in ICS networks by using software defined networking (SDN) to route traffic to the cloud for inspection using network function virtualization (NFV) and service function chaining. CB-IDPS uses Amazon Web Services to create a virtual private cloud for packet inspection. The CB-IDPS framework is designed with considerations to the ICS delay constraints, dynamic traffic routing, scalability, resilience, and visibility. CB-IDPS is presented in the context of a micro grid energy management system as the test case to prove that the latency of CB-IDPS is within acceptable delay thresholds. The implementation of CB-IDPS uses the OpenDaylight software for the SDN controller and commonly used network security tools such as Zeek and Snort. To our knowledge, this is the first attempt at using NFV in an ICS context for network security.
引用
收藏
页码:98 / 104
页数:7
相关论文
共 50 条
  • [1] Intrusion Detection and Prevention in Software Defined Networking
    Goyal, Abhilash
    Gupta, Divyansh
    [J]. 2018 IEEE INTERNATIONAL CONFERENCE ON ADVANCED NETWORKS AND TELECOMMUNICATIONS SYSTEMS (ANTS), 2018,
  • [2] Deployment of Intrusion Prevention System Based on Software Defined Networking
    Zhang, Lei
    Shou, Guochu
    Hu, Yihong
    Guo, Zhigang
    [J]. 2013 15TH IEEE INTERNATIONAL CONFERENCE ON COMMUNICATION TECHNOLOGY (ICCT), 2013, : 26 - 31
  • [3] Risk based intrusion detection system in software defined networking
    Chetouane, Ameni
    Karoui, Kamel
    [J]. CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2024, 36 (09):
  • [4] An adaptive multistage intrusion detection and prevention system in software defined networking environment
    Maheswaran, N.
    Bose, S.
    Natarajan, Buvaneswari
    [J]. AUTOMATIKA, 2024, 65 (04) : 1364 - 1378
  • [5] HMM-based Intrusion Detection System for Software Defined Networking
    Hurley, Trae
    Perdomo, Jorge E.
    Perez-Pons, Alexander
    [J]. 2016 15TH IEEE INTERNATIONAL CONFERENCE ON MACHINE LEARNING AND APPLICATIONS (ICMLA 2016), 2016, : 617 - 621
  • [6] Software-Defined Networking approaches for intrusion response in Industrial Control Systems: A survey
    Etxezarreta, Xabier
    Garitano, Inaki
    Iturbe, Mikel
    Zurutuza, Urko
    [J]. INTERNATIONAL JOURNAL OF CRITICAL INFRASTRUCTURE PROTECTION, 2023, 42
  • [7] Cat deep system for intrusion detection in software defined networking
    Hande, Yogita
    Muddana, Akkalakshmi
    [J]. International Journal of Intelligent Information and Database Systems, 2022, 15 (02) : 125 - 165
  • [8] SDNIPS: Enabling Software-Defined Networking Based Intrusion Prevention System in Clouds
    Xing, Tianyi
    Xiong, Zhengyang
    Huang, Dijiang
    Medhi, Deep
    [J]. 2014 10TH INTERNATIONAL CONFERENCE ON NETWORK AND SERVICE MANAGEMENT (CNSM), 2014, : 308 - 311
  • [9] Data driven intrusion detection system for software defined networking enabled industrial internet of things
    Madhawa, Surendar
    Balakrishnan, P.
    Arumugam, Umamakeswari
    [J]. JOURNAL OF INTELLIGENT & FUZZY SYSTEMS, 2018, 34 (03) : 1289 - 1300
  • [10] A multi-layered intrusion detection system for software defined networking
    Bour, Hamideh
    Abolhasan, Mehran
    Jafarizadeh, Saber
    Lipman, Justin
    Makhdoom, Imran
    [J]. COMPUTERS & ELECTRICAL ENGINEERING, 2022, 101