Study of Network IDS in IoT devices

被引:0
|
作者
Rosay A. [1 ,2 ]
Cheval E. [1 ]
Ghanmi M. [1 ]
Carlier F. [2 ]
Leroux P. [2 ]
机构
[1] STMicroelectronics, Rue Pierre Félix Delarue, Le Mans
[2] CREN, Le Mans University, Avenue Olivier Messiaen, Le Mans
关键词
CIC-IDS2017; CICFlowMeter; Datasets; LYCOS-IDS2017; LycoSTand; Machine learning; Network intrusion detection;
D O I
10.1007/s42979-023-01849-3
中图分类号
学科分类号
摘要
As connected objects become the norm for quality of life, network intrusion detection is more critical than ever. Over the past decades, several different datasets have been developed to tackle this security challenge. Among them, CIC-IDS2017, one of the most recent IDS datasets, has become a popular choice. Its benefit is the availability of raw data in PCAP files as well as flow-based features in CSV files. In this paper, we study IDS for IoT devices. The objective is to optimize the detection model to be compatible on a device with limited resources. To do so, we propose a methodology to improve the reliability and processing speed of flow-based IDS data. By applying it to CIC-IDS2017 dataset, we highlight serious flaws at several levels and propose a new feature extraction tool named LycoSTand used to generate a corrected version of the dataset called LYCOS-IDS2017. The performance comparison between the original and the corrected datasets shows significant performances increases for all evaluated machine learning algorithms with simpler and more efficient ML models. We carry out a runtime analysis showing that the feature extraction is the bottleneck in flow-based IDS. The experimentation with our solution removing the bottleneck proves that the whole intrusion detection system can be executed on a resource-constrained device. To conclude this paper, a discussion presents the difficulty to compare fairly the performance of the two datasets, identifies other non reliable datasets and finally, highlights limitations of supervised ML approaches. © 2023, The Author(s), under exclusive licence to Springer Nature Singapore Pte Ltd.
引用
收藏
相关论文
共 50 条
  • [1] Network Traffic Monitor for IDS in IoT
    Bolatti, Diego Angelo
    Todt, Carolina
    Scappini, Reinaldo
    Gramajo, Sergio
    [J]. CLOUD COMPUTING, BIG DATA & EMERGING TOPICS, JCC-BD&ET 2022, 2022, 1634 : 43 - 57
  • [2] Study for Integrating IoT-IDS Datasets: Machine and Deep Learning for Secure IoT Network System
    Sharma, Ankita
    Rani, Shalli
    Zohaib, Muhammad
    [J]. PROCEEDINGS OF 2024 28TH INTERNATION CONFERENCE ON EVALUATION AND ASSESSMENT IN SOFTWARE ENGINEERING, EASE 2024, 2024, : 686 - 691
  • [3] Transfer Learning Approach to IDS on Cloud IoT Devices Using Optimized CNN
    Okey, Ogobuchi Daniel
    Melgarejo, Dick Carrillo
    Saadi, Muhammad
    Rosa, Renata Lopes
    Kleinschmidt, Joao Henrique
    Rodriguez, Demostenes Zegarra
    [J]. IEEE ACCESS, 2023, 11 : 1023 - 1038
  • [4] An Improved Deep Belief Network IDS on IoT-Based Network for Traffic Systems
    Malik, Rayeesa
    Singh, Yashwant
    Sheikh, Zakir Ahmad
    Anand, Pooja
    Singh, Pradeep Kumar
    Workneh, Tewabe Chekole
    [J]. Journal of Advanced Transportation, 2022, 2022
  • [5] Management of IoT Devices in a Physical Network
    Ferreira, Jose
    Soares, Joao Nuno
    Jardim-Goncalves, Ricardo
    Agostinho, Carlos
    [J]. 2017 21ST INTERNATIONAL CONFERENCE ON CONTROL SYSTEMS AND COMPUTER SCIENCE (CSCS), 2017, : 485 - 492
  • [6] Explaining Machine Learning-Based Feature Selection of IDS for IoT and CPS Devices
    Akintade, Sesan
    Kim, Seongtae
    Roy, Kaushik
    [J]. ARTIFICIAL INTELLIGENCE APPLICATIONS AND INNOVATIONS, AIAI 2023, PT II, 2023, 676 : 69 - 80
  • [7] Protecting Smart-Home IoT Devices From MQTT Attacks: An Empirical Study of ML-Based IDS
    Alasmari, Rana
    Alhogail, Areej
    [J]. IEEE ACCESS, 2024, 12 : 25993 - 26004
  • [8] Network Based Detection of IoT Attack Using AIS-IDS Model
    Sabitha, R.
    Gopikrishnan, S.
    Bejoy, B. J.
    Anusuya, V
    Saravanan, V
    [J]. WIRELESS PERSONAL COMMUNICATIONS, 2023, 128 (03) : 1543 - 1566
  • [9] Network Based Detection of IoT Attack Using AIS-IDS Model
    R. Sabitha
    S. Gopikrishnan
    B. J. Bejoy
    V. Anusuya
    V. Saravanan
    [J]. Wireless Personal Communications, 2023, 128 : 1543 - 1566
  • [10] Passban IDS: An Intelligent Anomaly-Based Intrusion Detection System for IoT Edge Devices
    Eskandari, Mojtaba
    Janjua, Zaffar Haider
    Vecchio, Massimo
    Antonelli, Fabio
    [J]. IEEE INTERNET OF THINGS JOURNAL, 2020, 7 (08): : 6882 - 6897