A two-stage intrusion detection approach for software-defined IoT networks

被引:0
|
作者
Qiuting Tian
Dezhi Han
Meng-Yen Hsieh
Kuan-Ching Li
Arcangelo Castiglione
机构
[1] Shanghai Maritime University,College of Information Engineering
[2] Providence University,Department of Computer Science and Information Engineering (CSIE)
[3] University of Salerno,Department of Computer Science
来源
Soft Computing | 2021年 / 25卷
关键词
Software-defined Internet of Things (SD-IoT); Firefly algorithm; Intrusion detection; Feature selection; Ensemble classifier;
D O I
暂无
中图分类号
学科分类号
摘要
The concept of software-defined Internet of Things (SD-IoT) is becoming even more widespread. SD-IoT enables us to realize programmable networks and business, simplifying the management of the Internet of Things (IoT) and improving the IoT flexibility and scalability. However, with the promotion of SD-IoT-based applications and services, security issues in SD-IoT networks have become increasingly prominent. Aimed to deal with such issues, in this paper, we propose a two-stage intrusion detection approach for SD-IoT networks. It can more intelligently detect attacks under SD-IoT networks. In particular, we use the differential evolution algorithm's mutation mechanism to improve the firefly algorithm to solve the existing firefly algorithm's problems, such as slow convergence speed, easy to fall into local optimum on complex problems, and low accuracy. Next, based on the wrapper feature selection method, the selected features are sent to a novel ensemble classifier, composed of the C4.5 decision tree, multilayer perceptron, and instance-based learning. Again, the proposed approach uses the weighted voting method to determine whether network traffic is abnormal. Our proposal's detection performance is evaluated in binary and multiclass classifications by adopting the NSL-KDD and UNSW-NB15 public data sets. Experimental results show that the proposed multiclass classification approach's accuracy is 99.00% and 88.46%, respectively, while the false-positive rate is 0.81% and 4.16%, respectively. Finally, experimental results show that our proposal outperforms existing methods in terms of detection performance.
引用
收藏
页码:10935 / 10951
页数:16
相关论文
共 50 条
  • [31] Nature-inspired intrusion detection system for protecting software-defined networks controller
    Kumar, Chandan
    Biswas, Soham
    Ansari, Md. Sarfaraj Alam
    Govil, Mahesh Chandra
    [J]. COMPUTERS & SECURITY, 2023, 134
  • [32] A Deep One-Class Intrusion Detection Scheme in Software-Defined Industrial Networks
    Hu, Bing
    Bi, Yuanguo
    Zhi, Mingjian
    Zhang, Kuan
    Yan, Feihong
    Zhang, Qian
    Liu, Zheng
    [J]. IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2022, 18 (06) : 4286 - 4296
  • [33] Deep Active Learning Intrusion Detection and Load Balancing in Software-Defined Vehicular Networks
    Ahmed, Usman
    Lin, Jerry Chun-Wei
    Srivastava, Gautam
    Yun, Unil
    Singh, Amit Kumar
    [J]. IEEE TRANSACTIONS ON INTELLIGENT TRANSPORTATION SYSTEMS, 2023, 24 (01) : 953 - 961
  • [34] QL vs. SARSA: Performance Evaluation for Intrusion Prevention Systems in Software-Defined IoT Networks
    Moreira, Christian Miranda
    Kaddoum, Georges
    [J]. 2023 INTERNATIONAL WIRELESS COMMUNICATIONS AND MOBILE COMPUTING, IWCMC, 2023, : 500 - 504
  • [35] Detecting Intrusion Using Multiple Datasets in Software-Defined Networks
    Dang, Quang-Vinh
    [J]. FUTURE DATA AND SECURITY ENGINEERING. BIG DATA, SECURITY AND PRIVACY, SMART CITY AND INDUSTRY 4.0 APPLICATIONS, FDSE 2022, 2022, 1688 : 739 - 746
  • [36] Developing an IoT Networks-based Testbed for Software-Defined Networks
    Arman, Syed Adib
    Rahman, Md Mahfujur
    Rahman, Syeda Fabliha
    Urmi, Nazia Parvin
    Urmee, Progya Paromita
    Muslim, Nasif
    Islam, Salekul
    [J]. 2020 IEEE REGION 10 SYMPOSIUM (TENSYMP) - TECHNOLOGY FOR IMPACTFUL SUSTAINABLE DEVELOPMENT, 2020, : 1752 - 1755
  • [37] Dynamic Adaptation of Software-defined Networks for IoT Systems: A Search-based Approach
    Shin, Seung Yeob
    Nejati, Shiva
    Sabetzadeh, Mehrdad
    Briand, Lionel C.
    Arora, Chetan
    Zimmer, Frank
    [J]. 2020 IEEE/ACM 15TH INTERNATIONAL SYMPOSIUM ON SOFTWARE ENGINEERING FOR ADAPTIVE AND SELF-MANAGING SYSTEMS, SEAMS, 2020, : 137 - 148
  • [38] Dynamic Network Slice Assignment in Software-Defined IoT Networks
    Saha, Niloy
    Misra, Sudip
    [J]. 2020 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2020,
  • [39] Deep packet inspection for intelligent intrusion detection in software-defined industrial networks: A proof of concept
    Sainz, Markel
    Garitano, Inaki
    Iturbe, Mikel
    Zurutuza, Urko
    [J]. LOGIC JOURNAL OF THE IGPL, 2020, 28 (04) : 461 - 472
  • [40] Comparative Study of Artificial Intelligence Based Intrusion Detection for Software-Defined Wireless Sensor Networks
    Umba, S. Masengo Wa
    Abu-Mahfouz, Adnan M.
    Ramotsoela, T. D.
    Hancke, Gerhard P.
    [J]. 2019 IEEE 28TH INTERNATIONAL SYMPOSIUM ON INDUSTRIAL ELECTRONICS (ISIE), 2019, : 2220 - 2225