Explainable Security in SDN-Based IoT Networks

被引:21
|
作者
Sarica, Alper Kaan [1 ]
Angin, Pelin [1 ]
机构
[1] Middle East Tech Univ, Dept Comp Engn, TR-06800 Ankara, Turkey
关键词
SDN; security; machine learning; 5G; IoT; intrusion detection; INTRUSION DETECTION; SOFTWARE; FRAMEWORK; ATTACK;
D O I
10.3390/s20247326
中图分类号
O65 [分析化学];
学科分类号
070302 ; 081704 ;
摘要
The significant advances in wireless networks in the past decade have made a variety of Internet of Things (IoT) use cases possible, greatly facilitating many operations in our daily lives. IoT is only expected to grow with 5G and beyond networks, which will primarily rely on software-defined networking (SDN) and network functions virtualization for achieving the promised quality of service. The prevalence of IoT and the large attack surface that it has created calls for SDN-based intelligent security solutions that achieve real-time, automated intrusion detection and mitigation. In this paper, we propose a real-time intrusion detection and mitigation solution for SDN, which aims to provide autonomous security in the high-traffic IoT networks of the 5G and beyond era, while achieving a high degree of interpretability by human experts. The proposed approach is built upon automated flow feature extraction and classification of flows while using random forest classifiers at the SDN application layer. We present an SDN-specific dataset that we generated for IoT and provide results on the accuracy of intrusion detection in addition to performance results in the presence and absence of our proposed security mechanism. The experimental results demonstrate that the proposed security approach is promising for achieving real-time, highly accurate detection and mitigation of attacks in SDN-managed IoT networks.
引用
收藏
页码:1 / 30
页数:30
相关论文
共 50 条
  • [41] On SDN-Based Extreme-Scale Networks
    Ghalwash, Haitham
    Huang, Chun-Hsi
    2016 IEEE HIGH PERFORMANCE EXTREME COMPUTING CONFERENCE (HPEC), 2016,
  • [42] Biologically-inspired SDN-based Intrusion Detection and Prevention Mechanism for Heterogeneous IoT Networks
    Mansour, Ahmed
    Azab, Mohamed
    Rizk, Mohamed R. M.
    Abdelazim, Magdy
    2018 IEEE 9TH ANNUAL INFORMATION TECHNOLOGY, ELECTRONICS AND MOBILE COMMUNICATION CONFERENCE (IEMCON), 2018, : 1120 - 1125
  • [43] Filter Optimization in SDN-based Flexgrid Networks
    Paolucci, F.
    Fresi, F.
    Castro, A.
    Velasco, L.
    Cugini, F.
    Sambo, N.
    Giorgetti, A.
    Poti, L.
    Castoldi, P.
    2014 OPTICAL FIBER COMMUNICATIONS CONFERENCE AND EXHIBITION (OFC), 2014,
  • [44] The fuzzy-IAVOA energy-aware routing algorithm for SDN-based IoT networks
    Nazari, Amin
    Mohammadi, Reza
    Niknami, Nadia
    Jazaeri, Seyedeh Shabnam
    Wu, Jie
    INTERNATIONAL JOURNAL OF SENSOR NETWORKS, 2023, 42 (03) : 156 - 169
  • [45] Defending SDN-based IoT Networks Against DDoS Attacks Using Markov Decision Process
    Zheng, Jianjun
    Namin, Akbar Siami
    2018 IEEE INTERNATIONAL CONFERENCE ON BIG DATA (BIG DATA), 2018, : 4589 - 4592
  • [46] SDN-based VANETs, Security Attacks, Applications, and Challenges
    Arif, Muhammad
    Wang, Guojun
    Geman, Oana
    Balas, Valentina Emilia
    Tao, Peng
    Brezulianu, Adrian
    Chen, Jianer
    APPLIED SCIENCES-BASEL, 2020, 10 (09):
  • [47] SDN-Based Data Transfer Security for Internet of Things
    Liu, Yanbing
    Kuang, Yao
    Xiao, Yunpeng
    Xu, Guangxia
    IEEE INTERNET OF THINGS JOURNAL, 2018, 5 (01): : 257 - 268
  • [48] A critical review of OpenFlow/SDN-based networks
    de Almeida Amazonas, Jose Roberto
    Santos-Boada, German
    Sole-Pareta, Josep
    2014 16TH INTERNATIONAL CONFERENCE ON TRANSPARENT OPTICAL NETWORKS (ICTON), 2014,
  • [49] Deep Learning Feature Fusion Approach for an Intrusion Detection System in SDN-Based IoT Networks
    Ravi V.
    Chaganti R.
    Alazab M.
    IEEE Internet of Things Magazine, 2022, 5 (02): : 24 - 29
  • [50] SDN-based Security Services using Interface to Network Security Functions
    Kim, Jinyong
    Firoozjaei, Mahdi Daghmehchi
    Jeong, Jaehoon
    Kim, Hyoungshick
    Park, Jung-Soo
    2015 INTERNATIONAL CONFERENCE ON ICT CONVERGENCE (ICTC), 2015, : 526 - 529