Towards Analysis of the Performance of IDSs in Software-Defined Networks

被引:1
|
作者
Niknami, Nadia [1 ]
Inkrott, Emily [2 ]
Wu, Jie [1 ]
机构
[1] Temple Univ, Dept Comp & Informat Sci, Philadelphia, PA 19122 USA
[2] Gonzaga Univ, Dept Comp Sci, Spokane, WA 99258 USA
关键词
Denial-of-service; detection rate; intrusion detection system; network traffic; software-defined network;
D O I
10.1109/MASS56207.2022.00124
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
As a promising technique for the design of 5G wireless networks, software-defined networks (SDNs) have been proposed. However, SDNs are vulnerable to most of the attacks that traditional networks are vulnerable to. Various techniques have been developed and designed to help in the detection as well as the prevention of various attacks. An intrusion detection system (IDS) is one of the common techniques used to detect malicious activity in a network. Intrusion detection systems have strengths and weaknesses when it comes to detecting intrusions. It becomes a challenging task for IDS to process any mixture of traffic that results in packet drop and delay. In this study, we scrutinized two open-source IDS, including Snort IDS and Zeek IDS, to assess the IDS performance in terms of various parameters such as detection rate, dropping rate, and latency. The method of detection was one of the main differences between Snort and Zeek. Zeek IDS uses an anomaly-based detection method as opposed to Snort IDS, which uses a signature-based detection method. Differences between them had an impact on the way network traffic was handled. Such a thought analysis is expected to be of great value in selection and further enhancement of IDS in SDN.
引用
收藏
页码:787 / 793
页数:7
相关论文
共 50 条
  • [41] Towards Software-Defined Buffer Management
    Kogan, Kirill
    Menikkumbura, Danushka
    Petri, Gustavo
    Noh, Youngtae
    Nikolenko, Sergey I.
    Sirotkin, Alexander
    Eugster, Patrick
    [J]. IEEE-ACM TRANSACTIONS ON NETWORKING, 2020, 28 (05) : 2337 - 2349
  • [42] Towards Distributed Software-Defined Environments
    Abdelbaky, Moustafa
    Diaz-Montes, Javier
    Parashar, Manish
    [J]. 2017 17TH IEEE/ACM INTERNATIONAL SYMPOSIUM ON CLUSTER, CLOUD AND GRID COMPUTING (CCGRID), 2017, : 703 - 706
  • [43] A Hybrid Intelligent Approach for Optimising Software-Defined Networks Performance
    Sabeeh, Ann
    Al-Dunainawi, Yousif
    Abbod, Maysam F.
    Al-Raweshidy, H. S.
    [J]. PROCEEDINGS OF THE 6TH INTERNATIONAL CONFERENCE ON INFORMATION COMMUNICATION AND MANAGEMENT (ICICM 2016), 2016, : 47 - 51
  • [44] Enhancing the performance of future wireless networks with software-defined networking
    Mingjie FENG
    Shiwen MAO
    Tao JIANG
    [J]. Frontiers of Information Technology & Electronic Engineering, 2016, 17 (07) : 606 - 619
  • [45] Towards the Partitioning Problem in Software-Defined IoT Networks for Urban Sensing
    Song, Chao
    Wu, Jie
    Chen, Xu
    Shi, Lei
    Liu, Ming
    [J]. 2018 IEEE INTERNATIONAL CONFERENCE ON PERVASIVE COMPUTING AND COMMUNICATIONS (PERCOM), 2018, : 190 - 198
  • [46] HBD: Towards Efficient Reactive Rule Dispatching in Software-Defined Networks
    Chen, Chang
    Hu, Xiaohe
    Zheng, Kai
    Wang, Xiang
    Xiang, Yang
    Li, Jun
    [J]. TSINGHUA SCIENCE AND TECHNOLOGY, 2016, 21 (02) : 196 - 209
  • [47] Dynamic Management of Control Plane Performance in Software-Defined Networks
    Gorkemli, Burak
    Parlakisik, A. Murat
    Civanlar, Seyhan
    Ulas, Aydin
    Tekalp, A. Murat
    [J]. 2016 IEEE NETSOFT CONFERENCE AND WORKSHOPS (NETSOFT), 2016, : 68 - 72
  • [48] Towards the Design of Efficient and Secure Architecture for Software-Defined Vehicular Networks
    Adnan, Muhammad
    Iqbal, Jawaid
    Waheed, Abdul
    Amin, Noor Ul
    Zareei, Mahdi
    Umer, Asif
    Mohamed, Ehab Mahmoud
    [J]. SENSORS, 2021, 21 (11)
  • [49] Towards Resource-aware Flow Delegation for Software-defined Networks
    Bauer, Robert
    Dittebrandt, Addis
    [J]. 2017 INTERNATIONAL CONFERENCE ON NETWORKED SYSTEMS (NETSYS), 2017,
  • [50] Towards Software-Defined Tactical Networks: Experiments and Challenges for Control Overhead
    Rettore, Paulo H. L.
    Djurica, Miodrag
    Lopes, Roberto Rigolin F.
    Mota, Vinicius F. S.
    Cramer, Eelco
    Drijver, Floris
    Loevenich, Johannes F.
    [J]. 2022 IEEE MILITARY COMMUNICATIONS CONFERENCE (MILCOM), 2022,