Towards Analysis of the Performance of IDSs in Software-Defined Networks

被引:1
|
作者
Niknami, Nadia [1 ]
Inkrott, Emily [2 ]
Wu, Jie [1 ]
机构
[1] Temple Univ, Dept Comp & Informat Sci, Philadelphia, PA 19122 USA
[2] Gonzaga Univ, Dept Comp Sci, Spokane, WA 99258 USA
关键词
Denial-of-service; detection rate; intrusion detection system; network traffic; software-defined network;
D O I
10.1109/MASS56207.2022.00124
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
As a promising technique for the design of 5G wireless networks, software-defined networks (SDNs) have been proposed. However, SDNs are vulnerable to most of the attacks that traditional networks are vulnerable to. Various techniques have been developed and designed to help in the detection as well as the prevention of various attacks. An intrusion detection system (IDS) is one of the common techniques used to detect malicious activity in a network. Intrusion detection systems have strengths and weaknesses when it comes to detecting intrusions. It becomes a challenging task for IDS to process any mixture of traffic that results in packet drop and delay. In this study, we scrutinized two open-source IDS, including Snort IDS and Zeek IDS, to assess the IDS performance in terms of various parameters such as detection rate, dropping rate, and latency. The method of detection was one of the main differences between Snort and Zeek. Zeek IDS uses an anomaly-based detection method as opposed to Snort IDS, which uses a signature-based detection method. Differences between them had an impact on the way network traffic was handled. Such a thought analysis is expected to be of great value in selection and further enhancement of IDS in SDN.
引用
收藏
页码:787 / 793
页数:7
相关论文
共 50 条
  • [1] Towards a reliable firewall for software-defined networks
    Hu, Hongxin
    Han, Wonkyu
    Kyung, Sukwha
    Wang, Juan
    Ahn, Gail-Joon
    Zhao, Ziming
    Li, Hongda
    [J]. COMPUTERS & SECURITY, 2019, 87
  • [2] Towards Software-Defined Delay Tolerant Networks
    Ta, Dominick
    Booth, Stephanie
    Dudukovich, Rachel
    [J]. NETWORK, 2023, 3 (01): : 15 - 38
  • [3] AMOPE: Performance Analysis of OpenFlow Systems in Software-Defined Networks
    Mondal, Ayan
    Misra, Sudip
    Maity, Ilora
    [J]. IEEE SYSTEMS JOURNAL, 2020, 14 (01): : 124 - 131
  • [4] Performance Analysis of Software-Defined Multihop Wireless Sensor Networks
    Jurado-Lasso, F. Fernando
    Clarke, Ken
    Nirmalathas, Ampalavanapillai
    [J]. IEEE SYSTEMS JOURNAL, 2020, 14 (04): : 4653 - 4662
  • [5] Performance of QoS policies in Software-Defined Networks
    Gomez Manzanares, Juan Felipe
    Pachon de la Cruz, Alvaro
    Madrid Molina, Juan Manuel
    [J]. 2018 IEEE 10TH LATIN-AMERICAN CONFERENCE ON COMMUNICATIONS (IEEE LATINCOM), 2018,
  • [6] Towards Causal Consistent Updates in Software-Defined Networks
    Guidara, Amine
    Pomares Hernandez, Saul E.
    Rodriguez Henriquez, Lil Maria X.
    Kacem, Hatem Hadj
    Kacem, Ahmed Hadj
    [J]. APPLIED SCIENCES-BASEL, 2020, 10 (06):
  • [7] Towards Efficient Multicast Communication in Software-Defined Networks
    Humernbrum, Tim
    Hagedorn, Bastian
    Gorlatch, Sergei
    [J]. 2016 IEEE 36TH INTERNATIONAL CONFERENCE ON DISTRIBUTED COMPUTING SYSTEMS WORKSHOPS (ICDCSW 2016), 2016, : 106 - 113
  • [8] Towards a NetFlow implementation for OpenFlow Software-Defined Networks
    Suarez-Varela, Jose
    Barlet-Ros, Pere
    [J]. 2017 PROCEEDINGS OF THE 29TH INTERNATIONAL TELETRAFFIC CONGRESS (ITC 29), VOL 1, 2017, : 187 - 195
  • [9] Towards Optimal Network Planning for Software-Defined Networks
    Lin, Shih-Chun
    Wang, Pu
    Akyildiz, Ian F.
    Luo, Min
    [J]. IEEE TRANSACTIONS ON MOBILE COMPUTING, 2018, 17 (12) : 2953 - 2967
  • [10] Towards Controller Placement for Robust Software-Defined Networks
    Guo, Sheng
    Yang, Shu
    Li, Qi
    Jiang, Yong
    [J]. 2015 IEEE 34TH INTERNATIONAL PERFORMANCE COMPUTING AND COMMUNICATIONS CONFERENCE (IPCCC), 2015,