A Two-Stage Confidence-Based Intrusion Detection System in Programmable Data-Planes

被引:1
|
作者
Zhang, Kaiyi [1 ]
Samaan, Nancy [1 ]
Karmouch, Ahmed [1 ]
机构
[1] Univ Ottawa, Sch Elect Engn & Comp Sci, Ottawa, ON, Canada
关键词
Intelligent data-planes; convolutional neural networks; anomaly detection; P4; parameter sharing;
D O I
10.1109/GLOBECOM54140.2023.10437314
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
The frequent occurrence of network attacks highlights the criticality of developing effective intrusion detection systems (IDSs) that can promptly detect and respond to malicious flows. The proliferation of programmable devices has opened up new possibilities for integrating intelligent IDSs into the data-plane. This allows the execution of machine learning (ML)-based detection models at line-rate, meeting the low latency requirements of anomaly detection. We propose a two-stage confidence-based Intrusion Detection System (TSCIDS) that aims at early detection while considering the level of certainty of prediction. The control-plane adopts a customized transfer learning scheme, wherein two interdependent convolutional neural network (CNN) models are trained, one using the early context of flows and the other adding the later context. A post-hoc calibration method is applied to improve the performance of models. TSCIDS detects anomalous behavior in different phases of flows while allowing the latter CNN to leverage the hidden state of the early CNN. TSCIDS ensures that the two CNN models are integrated into the data-plane pipeline by building the inference steps of CNN into different modules, using switch-supported operations. Simulation results show that the calibrated model can detect more attacks in the early phase compared to the uncalibrated model. Additionally, the training scheme saves the memory consumption of running models on programmable devices.
引用
收藏
页码:6850 / 6855
页数:6
相关论文
共 50 条
  • [1] A Two-Stage IoT Window Intrusion Detection System
    Mathuseck, Lars
    Goetz, Johann
    Morold, Michel
    David, Klaus
    2023 IEEE 9TH WORLD FORUM ON INTERNET OF THINGS, WF-IOT, 2023,
  • [2] A Machine Learning-Based Toolbox for P4 Programmable Data-Planes
    Zhang, Kaiyi
    Samaan, Nancy
    Karmouch, Ahmed
    IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2024, 21 (04): : 4450 - 4465
  • [3] Detection of Database Intrusion Using a Two-Stage Fuzzy System
    Panigrahi, Suvasini
    Sural, Shamik
    INFORMATION SECURITY, PROCEEDINGS, 2009, 5735 : 107 - 120
  • [4] A two-stage technique to improve intrusion detection systems based on data mining algorithms
    Fatma, Hachmi
    Mohamed, Limam
    2013 5TH INTERNATIONAL CONFERENCE ON MODELING, SIMULATION AND APPLIED OPTIMIZATION (ICMSAO), 2013,
  • [5] A two-stage hybrid model for intrusion detection
    Krishnamoorthi
    Reddy, N. V. Subba
    Acharya, U. Dinesh
    2006 INTERNATIONAL CONFERENCE ON ADVANCED COMPUTING AND COMMUNICATIONS, VOLS 1 AND 2, 2007, : 158 - 160
  • [6] A two-stage hybrid classification technique for network intrusion detection system
    Jamal Hussain
    Samuel Lalmuanawma
    Lalrinfela Chhakchhuak
    International Journal of Computational Intelligence Systems, 2016, 9 : 863 - 875
  • [7] A two-stage intrusion detection system with auto-encoder and LSTMs
    Mushtaq, Earum
    Zameer, Aneela
    Umer, Muhammad
    Abbasi, Asima Akber
    APPLIED SOFT COMPUTING, 2022, 121
  • [8] A two-stage hybrid classification technique for network intrusion detection system
    Hussain, Jamal
    Lalmuanawma, Samuel
    Chhakchhuak, Lalrinfela
    INTERNATIONAL JOURNAL OF COMPUTATIONAL INTELLIGENCE SYSTEMS, 2016, 9 (05) : 863 - 875
  • [9] An Efficient Two-Stage Network Intrusion Detection System in the Internet of Things
    Zhang, Hongpo
    Zhang, Bo
    Huang, Lulu
    Zhang, Zhaozhe
    Huang, Haizhaoyang
    INFORMATION, 2023, 14 (02)
  • [10] A Machine Learning Based Two-Stage Wi-Fi Network Intrusion Detection System
    Reyes, Abel A.
    Vaca, Francisco D.
    Aguayo, Gabriel A. Castro
    Niyaz, Quamar
    Devabhaktuni, Vijay
    ELECTRONICS, 2020, 9 (10) : 1 - 18