An optimal feature based network intrusion detection system using bagging ensemble method for real-time traffic analysis

被引:5
|
作者
Chowdhury, Ratul [1 ]
Sen, Shibaprasad [2 ]
Roy, Arindam [3 ]
Saha, Banani [3 ]
机构
[1] Future Inst Engn & Management, Kolkata, India
[2] Univ Engn & Management, Kolkata, India
[3] Univ Calcutta, Kolkata, India
关键词
Intrusion detection system; NSL-KDD dataset; Moth-flame optimization; Bagging ensemble method; Real-time test-bed; MOTH-FLAME OPTIMIZATION; ALGORITHM;
D O I
10.1007/s11042-022-12330-3
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The enormous growth of cyber threats has become a calamitous issue in today's technically advanced world where data and information play a crucial role in identifying patterns and automatic predictive analysis. Network packet analysis is a pivotal technique in cybersecurity to protect our network and computer from unauthorized access. A network intrusion detection system (NIDS) is a network packet monitoring tool that intently inspects all the incoming and outgoing packets passing through a network and recognizes malicious incidents. This paper proposes a novel NIDS using the decision tree-based Bagging ensemble method, where the NSL-KDD dataset has been used for experimental purposes. The optimal features from the mentioned dataset have been filtered through the application of the wrapper-based Moth Flame optimization (MFO) technique and the effectiveness of the selected features has been evaluated using various machine learning, deep learning, and ensemble learning frameworks. All the experiments have been conducted in accordance with both binary and multiclass categories. Exhaustive performance evaluation confirms that the proposed MFO-ENSEMBLE method achieves an 87.43% detection rate and incurs minimal time overhead amongst all classification techniques. Practical implementation of the proposed methodology in a custom-built real-time test-bed confirms both the novelty as well as the feasibility of this work.
引用
收藏
页码:41225 / 41247
页数:23
相关论文
共 50 条
  • [1] An optimal feature based network intrusion detection system using bagging ensemble method for real-time traffic analysis
    Ratul Chowdhury
    Shibaprasad Sen
    Arindam Roy
    Banani Saha
    [J]. Multimedia Tools and Applications, 2022, 81 : 41225 - 41247
  • [2] A Network Intrusion Detection Method Based on Bagging Ensemble
    Zhang, Zichen
    Kong, Shanshan
    Xiao, Tianyun
    Yang, Aimin
    [J]. SYMMETRY-BASEL, 2024, 16 (07):
  • [3] An implementation of bi-phase network intrusion detection system by using real-time traffic analysis
    Chowdhury, Ratul
    Sen, Shibaprasad
    Goswami, Arpan
    Purkait, Shankhadeep
    Saha, Banani
    [J]. EXPERT SYSTEMS WITH APPLICATIONS, 2023, 224
  • [4] REAL-TIME TRAFFIC DETECTION and ANALYSIS of NETWORK SECURITY INTRUSION ATTACK: SNORT INTRUSION PREVENTION SYSTEM
    Zhou, A.L.
    [J]. Telecommunications and Radio Engineering (English translation of Elektrosvyaz and Radiotekhnika), 2020, 79 (12): : 1055 - 1062
  • [5] Intrusion Detection System Using Bagging Ensemble Method of Machine Learning
    Gaikwad, D. P.
    Thool, Ravindra C.
    [J]. 1ST INTERNATIONAL CONFERENCE ON COMPUTING COMMUNICATION CONTROL AND AUTOMATION ICCUBEA 2015, 2015, : 291 - 295
  • [6] Feature weighting and selection for a real-time network intrusion detection system based on GA with KNN
    Su, Ming-Yang
    Chang, Kai-Chi
    Wei, Hua-Fu
    Lin, Chun-Yuen
    [J]. INTELLIGENCE AND SECURITY INFORMATICS, PROCEEDINGS, 2008, 5075 : 195 - 204
  • [7] Ensemble Model for Network Intrusion Detection System Based on Bagging Using J48
    Otoom, Mohammad Mahmood
    Sattar, Khalid Nazim Abdul
    Al Sadig, Mutasim
    [J]. ADVANCES IN SCIENCE AND TECHNOLOGY-RESEARCH JOURNAL, 2023, 17 (02) : 322 - 329
  • [8] Intrusion Detection System using Bagging Ensemble Selection
    Sreenath, M.
    Udhayan, J.
    [J]. 2015 IEEE INTERNATIONAL CONFERENCE ON ENGINEERING AND TECHNOLOGY (ICETECH), 2015, : 4 - 7
  • [9] Griffin: Real-Time Network Intrusion Detection System via Ensemble of Autoencoder in SDN
    Yang, Liyan
    Song, Yubo
    Gao, Shang
    Hu, Aiqun
    Xiao, Bin
    [J]. IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2022, 19 (03): : 2269 - 2281
  • [10] An intrusion detection system using ranked feature bagging
    Azhagiri M.
    Rajesh A.
    Karthik S.
    Raja K.
    [J]. International Journal of Information Technology, 2024, 16 (2) : 1213 - 1219