Intrusion Detection in Hybrid Cloud Networks

被引:0
|
作者
Suresh-Menon, Durga [1 ]
Leeser, Miriam [1 ]
Zink, Michael [2 ]
机构
[1] Northeastern Univ, Coll Engn, ECE, Boston, MA 02115 USA
[2] Univ Massachusetts Amherst, Coll Engn, ECE, Amherst, MA USA
关键词
Network Intrusion Detection; Cybersecurity; Cloud Computing; Security; ACL; Detection; Prevention; Mitigation;
D O I
10.1109/Cloud-Summit61220.2024.00037
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
The proliferation of cloud computing has significantly transformed the digital landscape, offering scalable resources and services over the Internet. However, this shift has also exposed cloud networks to a myriad of sophisticated cyber threats, necessitating robust and adaptive security mechanisms. Network Intrusion Detection Systems (NIDS) are put in place to manage some of these threats like denial of service attacks (DOS), distributed denial of service attacks (DDOS), scanning, and probing to name a few. This paper presents a novel approach to Network Intrusion Detection Systems (NIDS) tailored for hybrid cloud networks. The goal of our approach is to efficiently detect and mitigate an intruder by using a simple algorithm based on the data available in transmitted packets in a hybrid cloud network. Specifically, we identify potential network intruders assuming the very high data rates of modern data networks. Once the intruder is identified, their access to the network is restricted using the access control list on the switch. This approach can be done with very low latency and at line rate. We remove the suspected malicious user from the Access Control List (ACL) on a switch connected to the network admin server. We also propose a mechanism to reinstate the user if they successfully explain that they are not a network intruder. To evaluate the effectiveness of our approach, we conducted experiments in a simulated hybrid cloud network environment using data captured from a live data stream.
引用
收藏
页码:188 / 193
页数:6
相关论文
共 50 条
  • [41] Application of Cloud Model in Intrusion Detection
    Wang, Deguang
    Zhou, Zhigang
    2010 2ND INTERNATIONAL CONFERENCE ON E-BUSINESS AND INFORMATION SYSTEM SECURITY (EBISS 2010), 2010, : 164 - 167
  • [42] A Novel Framework for Intrusion Detection in Cloud
    Modi, Chirag
    Patel, Dhiren
    Borisanya, Bhavesh
    Patel, Avi
    Rajarajan, Muttukrishnan
    PROCEEDINGS OF THE FIFTH INTERNATIONAL CONFERENCE ON SECURITY OF INFORMATION AND NETWORKS, 2012, : 67 - 74
  • [43] A framework for Network Intrusion Detection in Cloud
    Prwez, Md Tarique
    Chatterjee, Kakali
    2016 IEEE 6TH INTERNATIONAL CONFERENCE ON ADVANCED COMPUTING (IACC), 2016, : 512 - 516
  • [44] A survey of intrusion detection techniques in Cloud
    Modi, Chirag
    Patel, Dhiren
    Borisaniya, Bhavesh
    Patel, Hiren
    Patel, Avi
    Rajarajan, Muttukrishnan
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2013, 36 (01) : 42 - 57
  • [45] Virtual Intrusion Detection Systems in the Cloud
    Donadio, Pasquale
    BELL LABS TECHNICAL JOURNAL, 2012, 17 (03) : 113 - 128
  • [46] Cloud Resource Monitoring for Intrusion Detection
    He, Sijin
    Ghanem, Moustafa
    Guo, Li
    Guo, Yike
    2013 IEEE FIFTH INTERNATIONAL CONFERENCE ON CLOUD COMPUTING TECHNOLOGY AND SCIENCE (CLOUDCOM), VOL 2, 2013, : 281 - 284
  • [47] Intrusion Detection for Grid and Cloud Computing
    Vieira, Kleber
    Schulter, Alexandre
    Westphall, Carlos Becker
    Westphall, Carla Merkle
    IT PROFESSIONAL, 2010, 12 (04) : 38 - 43
  • [48] A Hybrid Intrusion Detection System Leveraging XGBoost and RNNs for hnhanced Anomaly Detection in Cloud Data Centers
    Althoubi, Asaad
    Peyravi, Hassan
    2023 INTERNATIONAL CONFERENCE ON COMPUTATIONAL SCIENCE AND COMPUTATIONAL INTELLIGENCE, CSCI 2023, 2023, : 1039 - 1046
  • [49] A hybrid heuristics artificial intelligence feature selection for intrusion detection classifiers in cloud of things
    Sangaiah, Arun Kumar
    Javadpour, Amir
    Ja'fari, Forough
    Pinto, Pedro
    Zhang, Weizhe
    Balasubramanian, Sudha
    CLUSTER COMPUTING-THE JOURNAL OF NETWORKS SOFTWARE TOOLS AND APPLICATIONS, 2023, 26 (01): : 599 - 612
  • [50] Enhancement of an IoT hybrid intrusion detection system based on fog-to-cloud computing
    Mohamed, Doaa
    Ismael, Osama
    JOURNAL OF CLOUD COMPUTING-ADVANCES SYSTEMS AND APPLICATIONS, 2023, 12 (01):