Ensemble Learning for Intrusion Detection in SDN-Based Zero Touch Smart Grid Systems

被引:14
|
作者
El Houda, Zakaria Abou [1 ]
Brik, Bouziane [2 ]
Khoukhi, Lyes [3 ]
机构
[1] ISEN Yncrea Ouest, LbISEN, Carquefou, France
[2] Univ Bourgogne Franche Comte, DRIVE EA1859, Besancon, France
[3] Normandie Univ, GREYC CNRS, ENSICAEN, Rouen, France
关键词
Smart Grid; Software-defined network; Intrusion detection systems; Ensemble Learning; ATTACKS; MODEL;
D O I
10.1109/LCN53696.2022.9843645
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Software-defined network (SDN) is widely deployed on Smart Grid (SG) systems. It consists in decoupling control and data planes, to automate the monitoring and management of the communication network, and thus enabling zero touch management of SG systems. However, SDN-based SG is prone to several security threats and varios type of new attacks. To alleviate these issues, various Machine/Deep learning (ML/DL)-based intrusion detection systems (IDS) were designed to improve the detection accuracy of conventional IDS. However, they suffer from high variance and/or bias, which may lead to an inaccurate security threat detection. In this context, ensemble learning is an emerging ML technique that aims at combining several ML models; the objective is to generate less data-sensitive (i.e., less variance) and more flexible ( i.e., less bias) machine learning models. In this paper, we design a novel framework, called BoostIDS, that leverages ensemble learning to efficiently detect and mitigate security threats in SDN-based SG system. BoostIDS comprises two main modules: (1) A data monitoring and feature selection module that makes use of an efficient Boosting Feature Selection Algorithm to select the best/relevant SG-based features; and (2) An ensemble learning-based threats detection moel that implements a Lightweight Boosting Algorithm (LBA) to timely and effectively detects SG-based attacks in a SDN environment. We conduct extensive experiments to validate BoostIDS on top of multiple real attacks; the obtained results using NSL-KDD and UNSW-NB15 datasets, confirm that BoostIDS can effectively detect/mitigate security threats in SDN-based SG systems, while optimizing training/test time complexity.
引用
收藏
页码:149 / 156
页数:8
相关论文
共 50 条
  • [1] Survey On SDN-based Intrusion Detection Systems
    Mostafa, Naneese
    Metwally, Khaled
    Badran, Khaled
    [J]. 2024 14TH INTERNATIONAL CONFERENCE ON ELECTRICAL ENGINEERING, ICEENG 2024, 2024, : 317 - 322
  • [2] Ensemble Learning Framework for DDoS Detection in SDN-Based SCADA Systems
    Oyucu, Saadin
    Polat, Onur
    Turkoglu, Muammer
    Polat, Hueseyin
    Aksoz, Ahmet
    Agdas, Mehmet Tevfik
    [J]. SENSORS, 2024, 24 (01)
  • [3] Intrusion Detection-Based Ensemble Learning and Microservices for Zero Touch Networks
    Bugshan, Neda
    Khalil, Ibrahim
    Kalapaaking, Aditya Pribadi
    Atiquzzaman, Mohammed
    [J]. IEEE COMMUNICATIONS MAGAZINE, 2023, 61 (06) : 86 - 92
  • [4] SDN-based Resilience for Smart Grid Communications
    Aydeger, Abdullah
    Akkaya, Kemal
    Uluagac, A. Selcuk
    [J]. 2015 IEEE CONFERENCE ON NETWORK FUNCTION VIRTUALIZATION AND SOFTWARE DEFINED NETWORK (NFV-SDN), 2015, : 31 - 33
  • [5] Ensemble Model Based on Hybrid Deep Learning for Intrusion Detection in Smart Grid Networks
    Alhaddad, Ulaa
    Basuhail, Abdullah
    Khemakhem, Maher
    Eassa, Fathy Elbouraey
    Jambi, Kamal
    [J]. SENSORS, 2023, 23 (17)
  • [6] Ensemble Learning Methods for Anomaly Intrusion Detection System in Smart Grid
    Khoei, Tala Talaei
    Aissou, Ghilas
    Hu, When Chen
    Kaabouch, Naima
    [J]. 2021 IEEE INTERNATIONAL CONFERENCE ON ELECTRO INFORMATION TECHNOLOGY (EIT), 2021, : 129 - 135
  • [7] SDN-Based Framework for the PEV Integrated Smart Grid
    Chen, Nan
    Wang, Miao
    Zhang, Ning
    Shen, Xuemin
    Zhao, Dongmei
    [J]. IEEE NETWORK, 2017, 31 (02): : 14 - 21
  • [8] SDN-Based Kernel Modular Countermeasure for Intrusion Detection
    Chin, Tommy
    Xiong, Kaiqi
    Rahouti, Mohamed
    [J]. SECURITY AND PRIVACY IN COMMUNICATION NETWORKS, SECURECOMM 2017, 2018, 238 : 270 - 290
  • [9] SDN-Based Critical Infrastructure Resilience: A Smart Grid Perspective
    Chiu, Steve C.
    [J]. 2023 INTERNATIONAL CONFERENCE ON COMPUTATIONAL SCIENCE AND COMPUTATIONAL INTELLIGENCE, CSCI 2023, 2023, : 1054 - 1060
  • [10] Intrusion Detection Systems in Smart Grid
    Rakas, Slavica Bostjancic
    Timcenko, Valentina
    Kabovic, Milenko
    Kabovic, Anka
    [J]. 2022 21ST INTERNATIONAL SYMPOSIUM INFOTEH-JAHORINA (INFOTEH), 2022,