Large-scale network intrusion detection based on distributed learning algorithm

被引:0
|
作者
Daxin Tian
Yanheng Liu
Yang Xiang
机构
[1] Jilin University,College of Computer Science and Technology
[2] Central Queensland University,School of Management and Information Systems
关键词
Intrusion detection system; Distributed learning; Neural network; Network behavior;
D O I
暂无
中图分类号
学科分类号
摘要
As network traffic bandwidth is increasing at an exponential rate, it’s impossible to keep up with the speed of networks by just increasing the speed of processors. Besides, increasingly complex intrusion detection methods only add further to the pressure on network intrusion detection (NIDS) platforms, so the continuous increasing speed and throughput of network poses new challenges to NIDS. To make NIDS usable in Gigabit Ethernet, the ideal policy is using a load balancer to split the traffic data and forward those to different detection sensors, which can analyze the splitting data in parallel. In order to make each slice contains all the evidence necessary to detect a specific attack, the load balancer design must be complicated and it becomes a new bottleneck of NIDS. To simplify the load balancer this paper put forward a distributed neural network learning algorithm (DNNL). Using DNNL a large data set can be split randomly and each slice of data is presented to an independent neural network; these networks can be trained in distribution and each one in parallel. Completeness analysis shows that DNNL’s learning algorithm is equivalent to training by one neural network which uses the technique of regularization. The experiments to check the completeness and efficiency of DNNL are performed on the KDD’99 Data Set which is a standard intrusion detection benchmark. Compared with other approaches on the same benchmark, DNNL achieves a high detection rate and low false alarm rate.
引用
收藏
页码:25 / 35
页数:10
相关论文
共 50 条
  • [1] Large-scale network intrusion detection algorithm based on distributed learning
    College of Computer Science and Technology, Jilin University, Changchun 130012, China
    不详
    [J]. Ruan Jian Xue Bao/Journal of Software, 2008, 19 (04): : 993 - 1003
  • [2] Large-scale network intrusion detection based on distributed learning algorithm
    Tian, Daxin
    Liu, Yanheng
    Xiang, Yang
    [J]. INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2009, 8 (01) : 25 - 35
  • [3] The architecture of the large-scale distributed intrusion detection system
    Chu, YG
    Li, J
    Yang, YX
    [J]. PDCAT 2005: SIXTH INTERNATIONAL CONFERENCE ON PARALLEL AND DISTRIBUTED COMPUTING, APPLICATIONS AND TECHNOLOGIES, PROCEEDINGS, 2005, : 130 - 132
  • [4] Machine-Learning-Based Feature Selection Techniques for Large-Scale Network Intrusion Detection
    Al-Jarrah, O. Y.
    Siddiqui, A.
    Elsalamouny, M.
    Yoo, P. D.
    Muhaidat, S.
    Kim, K.
    [J]. 2014 IEEE 34TH INTERNATIONAL CONFERENCE ON DISTRIBUTED COMPUTING SYSTEMS WORKSHOPS (ICDCSW), 2014, : 177 - 181
  • [5] Processing Intrusion Detection Alerts in Large-scale Network
    Li, Dong
    Li, Zhitang
    Ma, Jie
    [J]. PROCEEDINGS OF THE INTERNATIONAL SYMPOSIUM ON ELECTRONIC COMMERCE AND SECURITY, 2008, : 545 - 548
  • [6] Research on the strategy of large-scale distributed intrusion detection systems
    Zhu, Wen-Tao
    Li, Jin-Sheng
    Hong, Pei-Lin
    [J]. 2003, Shenyang Institute of Computing Technology (24):
  • [7] A distributed neural network learning algorithm for network intrusion detection system
    Liu, Yanheng
    Tian, Daxin
    Yu, Xuegang
    Wang, Jian
    [J]. NEURAL INFORMATION PROCESSING, PT 3, PROCEEDINGS, 2006, 4234 : 201 - 208
  • [8] An Alerts Correlation Technology for Large-Scale Network Intrusion Detection
    Yuan, Jingbo
    Ding, Shunli
    [J]. WEB INFORMATION SYSTEMS AND MINING, PT I, 2011, 6987 : 352 - +
  • [9] CASS: A distributed network clustering algorithm based on structure similarity for large-scale network
    Kim, Jungrim
    Shin, Mincheol
    Kim, Jeongwoo
    Park, Chihyun
    Lee, Sujin
    Woo, Jaemin
    Kim, Hyerim
    Seo, Dongmin
    Yu, Seokjong
    Park, Sanghyun
    [J]. PLOS ONE, 2018, 13 (10):
  • [10] Distributed Transfer Network Learning Based Intrusion Detection
    Gou, Shuiping
    Wang, Yuqin
    Jiao, Licheng
    Feng, Jing
    Yao, Yao
    [J]. 2009 IEEE INTERNATIONAL SYMPOSIUM ON PARALLEL AND DISTRIBUTED PROCESSING WITH APPLICATIONS, PROCEEDINGS, 2009, : 511 - 515