A Usability Study on the creation of Intrusion Detection Rules on IoT Networks

被引:0
|
作者
Mauro Junior, Davino [1 ]
Gama, Kiev [1 ]
机构
[1] Univ Fed Pernambuco, Ctr Informat, Recife, PE, Brazil
关键词
IoT; Usability; Security; Network Intrusion Detection Systems; INTERNET;
D O I
10.1145/3643794.3648281
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Network Intrusion Detection Systems (IDS) can be used to employ defenses on IoT environments by making use of rules to detect anomalies on network traffic. Usability must be treated as a key feature of these systems, especially on the process of creating the aforementioned rules. In this work, we present IoT-Flows, a platform built on traditional IDS's concepts such as network monitoring and generation of alerts once an anomaly is detected, but focusing on enabling users to create rules in an intuitive way with a user-interface (UI). We compared the usability of our platform with Suricata, a popular open-source IDS. In our experimental design, participants were assigned the task of creating a rule to detect a popular distributed denial-of-service attack (DDoS) attack on both systems. Then, we applied a System Usability Scale questionnaire combined with open-ended questions. The feedback showed that Suricata lacks flexibility and a user-friendly UI, especially for nonexperienced users, despite its good documentation. In contrast, IoTFlows was praised for its UI and flexibility but was slower in rule creation compared to Suricata. We found that usability needs to be considered when developing security systems, especially when targeting IoT contexts, where non-IT users are common.
引用
收藏
页码:73 / 80
页数:8
相关论文
共 50 条
  • [21] MLP-Based Intrusion Detection for Securing IoT Networks
    Cherfi, Sarra
    Lemouari, Ali
    Boulaiche, Ammar
    JOURNAL OF NETWORK AND SYSTEMS MANAGEMENT, 2025, 33 (01)
  • [22] Beta Hebbian Learning for Intrusion Detection in Networks of IoT Devices
    Michelena Grandio, Alvaro
    Garcia Ordas, Maria Teresa
    Marcos del Blanco, David Yeregui
    Aveleira-Mata, Jose
    Zayas-Gato, Francisco
    Jove, Esteban
    Casteleiro-Roca, Jose-Luis
    Quintian, Hector
    Alaiz-Moreton, Hector
    Luis Calvo-Rolle, Jose
    14TH INTERNATIONAL CONFERENCE ON COMPUTATIONAL INTELLIGENCE IN SECURITY FOR INFORMATION SYSTEMS AND 12TH INTERNATIONAL CONFERENCE ON EUROPEAN TRANSNATIONAL EDUCATIONAL (CISIS 2021 AND ICEUTE 2021), 2022, 1400 : 23 - 32
  • [23] A Hybrid Deep Learning Approach for Intrusion Detection in IoT Networks
    Emec, Murat
    Ozcanhan, Mehmet Hilal
    ADVANCES IN ELECTRICAL AND COMPUTER ENGINEERING, 2022, 22 (01) : 3 - 12
  • [24] An Intrusion Detection System on Ping of Death Attacks in IoT Networks
    Abdollahi, Asrin
    Fathi, Mohammad
    WIRELESS PERSONAL COMMUNICATIONS, 2020, 112 (04) : 2057 - 2070
  • [25] Enhancing Intrusion Detection in IoT Networks Through Federated Learning
    Dhakal, Raju
    Raza, Waleed
    Tummala, Vijayanth
    Niure Kandel, Laxima
    IEEE ACCESS, 2024, 12 : 167168 - 167182
  • [26] Decentralized Dedicated Intrusion Detection Security Agents for IoT Networks
    Ioannou, Christiana
    Charalambus, Andronikos
    Vassiliou, Vasos
    17TH ANNUAL INTERNATIONAL CONFERENCE ON DISTRIBUTED COMPUTING IN SENSOR SYSTEMS (DCOSS 2021), 2021, : 414 - 419
  • [27] Towards Machine Learning Based Intrusion Detection in IoT Networks
    Islam, Nahida
    Farhin, Fahiba
    Sultana, Ishrat
    Kaiser, M. Shamim
    Rahman, Md. Sazzadur
    Mahmud, Mufti
    Hosen, A. S. M. Sanwar
    Cho, Gi Hwan
    CMC-COMPUTERS MATERIALS & CONTINUA, 2021, 69 (02): : 1801 - 1821
  • [28] Deep Learning-based Intrusion Detection for IoT Networks
    Ge, Mengmeng
    Fu, Xiping
    Syed, Naeem
    Baig, Zubair
    Teo, Gideon
    Robles-Kelly, Antonio
    2019 IEEE 24TH PACIFIC RIM INTERNATIONAL SYMPOSIUM ON DEPENDABLE COMPUTING (PRDC 2019), 2019, : 256 - 265
  • [29] Generalizing Supervised Learning for Intrusion Detection in IoT Mesh Networks
    Keipour, Hossein
    Hazra, Saptarshi
    Finne, Niclas
    Voigt, Thiemo
    UBIQUITOUS SECURITY, 2022, 1557 : 214 - 228
  • [30] An Intrusion Detection System on Ping of Death Attacks in IoT Networks
    Asrin Abdollahi
    Mohammad Fathi
    Wireless Personal Communications, 2020, 112 : 2057 - 2070