Intrusion Detection in Hybrid Cloud Networks

被引:0
|
作者
Suresh-Menon, Durga [1 ]
Leeser, Miriam [1 ]
Zink, Michael [2 ]
机构
[1] Northeastern Univ, Coll Engn, ECE, Boston, MA 02115 USA
[2] Univ Massachusetts Amherst, Coll Engn, ECE, Amherst, MA USA
关键词
Network Intrusion Detection; Cybersecurity; Cloud Computing; Security; ACL; Detection; Prevention; Mitigation;
D O I
10.1109/Cloud-Summit61220.2024.00037
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
The proliferation of cloud computing has significantly transformed the digital landscape, offering scalable resources and services over the Internet. However, this shift has also exposed cloud networks to a myriad of sophisticated cyber threats, necessitating robust and adaptive security mechanisms. Network Intrusion Detection Systems (NIDS) are put in place to manage some of these threats like denial of service attacks (DOS), distributed denial of service attacks (DDOS), scanning, and probing to name a few. This paper presents a novel approach to Network Intrusion Detection Systems (NIDS) tailored for hybrid cloud networks. The goal of our approach is to efficiently detect and mitigate an intruder by using a simple algorithm based on the data available in transmitted packets in a hybrid cloud network. Specifically, we identify potential network intruders assuming the very high data rates of modern data networks. Once the intruder is identified, their access to the network is restricted using the access control list on the switch. This approach can be done with very low latency and at line rate. We remove the suspected malicious user from the Access Control List (ACL) on a switch connected to the network admin server. We also propose a mechanism to reinstate the user if they successfully explain that they are not a network intruder. To evaluate the effectiveness of our approach, we conducted experiments in a simulated hybrid cloud network environment using data captured from a live data stream.
引用
收藏
页码:188 / 193
页数:6
相关论文
共 50 条
  • [31] IHIDS: Introspection-Based Hybrid Intrusion Detection System in Cloud Environment
    Kashyap, Amita
    Kumar, G. Sravan
    Jangir, Sunita
    Pilli, Emmanuel S.
    Mishra, Preeti
    2017 INTERNATIONAL CONFERENCE ON ADVANCES IN COMPUTING, COMMUNICATIONS AND INFORMATICS (ICACCI), 2017, : 687 - 693
  • [32] A Hybrid Intrusion Detection Architecture for Defense against DDoS Attacks in Cloud Environment
    Gupta, Sanchika
    Horrow, Susmita
    Sardana, Anjali
    CONTEMPORARY COMPUTING, 2012, 306 : 498 - 499
  • [33] IMPLEMENTATION OF HYBRID MACHINE LEARNING TECHNIQUE FOR INTRUSION DETECTION SYSTEM IN CLOUD COMPUTING
    Poornima, E.
    Sasikala, C.
    INTERNATIONAL JOURNAL OF EARLY CHILDHOOD SPECIAL EDUCATION, 2022, 14 (02) : 1436 - 1442
  • [34] Intrusion detection system in distributed cloud computing: Hybrid clustering and classification methods
    Samunnisa K.
    Kumar G.S.V.
    Madhavi K.
    Measurement: Sensors, 2023, 25
  • [35] FCM technique for efficient intrusion detection system for wireless networks in cloud environment
    Chen, Mingming
    Wang, Ning
    Zhou, Haibo
    Chen, Yuzhi
    COMPUTERS & ELECTRICAL ENGINEERING, 2018, 71 : 978 - 987
  • [36] A Hybrid Model for Anomaly-based Intrusion Detection in SCADA Networks
    Ullah, Imtiaz
    Mahmoud, Qusay H.
    2017 IEEE INTERNATIONAL CONFERENCE ON BIG DATA (BIG DATA), 2017, : 2160 - 2167
  • [37] A Hybrid Machine Learning Intrusion Detection System for Wireless Sensor Networks
    Zhang, Hongwei
    Zaman, Marzia
    Jain, Achin
    Sampalli, Srinivas
    20TH INTERNATIONAL WIRELESS COMMUNICATIONS & MOBILE COMPUTING CONFERENCE, IWCMC 2024, 2024, : 830 - 835
  • [38] A hybrid intrusion detection system for virtual jamming attacks on wireless networks
    Santoro, Diego
    Escudero-Andreu, Gines
    Kyriakopoulos, Konstantinos G.
    Aparicio-Navarro, Francisco J.
    Parish, David J.
    Vadursi, Michele
    MEASUREMENT, 2017, 109 : 79 - 87
  • [39] A Hybrid Trust Based Intrusion Detection System for Wireless Sensor Networks
    Ozcelik, Mert Melih
    Irmak, Erdal
    Ozdemir, Suat
    2017 INTERNATIONAL SYMPOSIUM ON NETWORKS, COMPUTERS AND COMMUNICATIONS (ISNCC), 2017,
  • [40] Intrusion Detection in Computer Networks Using Hybrid Machine Learning Techniques
    Perez, Deyban
    Astor, Miguel A.
    Abreu, David Perez
    Scalise, Eugenio
    2017 XLIII LATIN AMERICAN COMPUTER CONFERENCE (CLEI), 2017,