Classification of Firewall Log Data Using Multiclass Machine Learning Models

被引:11
|
作者
Aljabri, Malak [1 ,2 ]
Alahmadi, Amal A. [3 ]
Mohammad, Rami Mustafa A. [4 ]
Aboulnour, Menna [2 ]
Alomari, Dorieh M. [5 ]
Almotiri, Sultan H. [1 ]
机构
[1] Umm Al Qura Univ, Coll Comp & Informat Syst, Dept Comp Sci, Mecca 21955, Saudi Arabia
[2] Imam Abdulrahman Bin Faisal Univ, Coll Comp Sci & Informat Technol, Dept Comp Sci, SAUDI ARAMCO Cybersecur Chair, POB 1982, Dammam 31441, Saudi Arabia
[3] Imam Abdulrahman Bin Faisal Univ, Coll Comp Sci & Informat Technol, Dept Networks & Commun, POB 1982, Dammam 31441, Saudi Arabia
[4] Imam Abdulrahman Bin Faisal Univ, Coll Comp Sci & Informat Technol, Dept Comp Informat Syst, POB 1982, Dammam 31441, Saudi Arabia
[5] Imam Abdulrahman Bin Faisal Univ, Coll Comp Sci & Informat Technol, Dept Comp Engn, SAUDI ARAMCO Cybersecur Chair, POB 1982, Dammam 31441, Saudi Arabia
关键词
machine learning; deep learning; network security; firewalls; random forest;
D O I
10.3390/electronics11121851
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
These days, we are witnessing unprecedented challenges to network security. This indeed confirms that network security has become increasingly important. Firewall logs are important sources of evidence, but they are still difficult to analyze. Artificial Intelligence (AI), Machine Learning (ML), and Deep Learning (DL) have emerged as effective in developing robust security measures due to the fact that they have the capability to deal with complex cyberattacks in a timely manner. This work aims to tackle the difficulty of analyzing firewall logs using ML and DL by building multiclass ML and DL models that can analyze firewall logs and classify the actions to be taken in response to received sessions as "Allow", "Drop", "Deny", or "Reset-both". Two sets of empirical evaluations were conducted in order to assess the performance of the produced models. Different features set were used in each set of the empirical evaluation. Further, two extra features, namely, application and category, were proposed to enhance the performance of the proposed models. Several ML and DL algorithms were used for the evaluation purposes, namely, K-Nearest Neighbor (KNN), Naive Bayas (NB), J48, Random Forest (RF) and Artificial Neural Network (ANN). One interesting reading in the experimental results is that the RF produced the highest accuracy of 99.11% and 99.64% in the first and the second experiments respectively. Yet, all other algorithms have also produced high accuracy rates which confirm that the proposed features played a significant role in improving the firewall classification rate.
引用
收藏
页数:17
相关论文
共 50 条
  • [21] Using pretrained models in ensemble learning for date fruits multiclass classification
    Eser, Murat
    Bilgin, Metin
    Yasin, Elham Tahsin
    Koklu, Murat
    JOURNAL OF FOOD SCIENCE, 2025, 90 (03)
  • [22] Multiclass classification of dry beans using computer vision and machine learning techniques
    Koklu, Murat
    Ozkan, Ilker Ali
    COMPUTERS AND ELECTRONICS IN AGRICULTURE, 2020, 174
  • [23] Multiclass Brain Tumor Classification Using Hyperspectral Imaging and Supervised Machine Learning
    Ruiz, Luisa
    Martin, Alberto
    Urbanos, Gemma
    Villanueva, Marta
    Sancho, Jaime
    Rosa, Gonzalo
    Villa, Manuel
    Chavarrias, Miguel
    Perez, Angel
    Juarez, Eduardo
    Lagares, Alfonso
    Sanz, Cesar
    2020 XXXV CONFERENCE ON DESIGN OF CIRCUITS AND INTEGRATED SYSTEMS (DCIS), 2020,
  • [24] Web Application Firewall Using Machine Learning
    Rohith
    Athief, Ridhwan
    Kishore, Naveen
    Paranthaman, R. Nithya
    2024 INTERNATIONAL CONFERENCE ON ADVANCES IN COMPUTING, COMMUNICATION AND APPLIED INFORMATICS, ACCAI 2024, 2024,
  • [25] Company Classification Using Machine Learning Models
    Kovarik, Martin
    PROCEEDINGS OF THE 4TH INTERNATIONAL CONFERENCE ON FINANCE AND ECONOMICS (ICFE 2017), 2017, : 311 - 325
  • [26] Multiclass Classification of Brain Cancer with Machine Learning Algorithms
    Erkal, Begum
    Basak, Selen
    Ciloglu, Alper
    Sener, Duygu Dede
    2020 MEDICAL TECHNOLOGIES CONGRESS (TIPTEKNO), 2020,
  • [27] Multiclass Mood Classification on Twitter Using Lexicon Dictionary and Machine Learning Algorithms
    Gaikwad, Govin
    Joshi, Deepali J.
    2016 INTERNATIONAL CONFERENCE ON INVENTIVE COMPUTATION TECHNOLOGIES (ICICT), VOL 1, 2016, : 512 - 517
  • [28] Classification of Thyroid Using Data Mining Models: A Comparison with Machine Learning Algorithm
    Balasree K.
    Dharmarajan K.
    SN Computer Science, 5 (3)
  • [29] Cardiotocography Data Analysis for Fetal Health Classification Using Machine Learning Models
    Salini, Yalamanchili
    Mohanty, Sachi Nandan
    Ramesh, Janjhyam Venkata Naga
    Yang, Ming
    Chalapathi, Mukkoti Maruthi Venkata
    IEEE ACCESS, 2024, 12 : 26005 - 26022
  • [30] Machine Learning Models for Classification of Cushing's Syndrome Using Retrospective Data
    Isci, Senol
    Kalender, Derya Sema Yaman
    Bayraktar, Firat
    Yaman, Alper
    IEEE JOURNAL OF BIOMEDICAL AND HEALTH INFORMATICS, 2021, 25 (08) : 3153 - 3162