Building an efficient intrusion detection system based on feature selection and ensemble classifier

被引:300
|
作者
Zhou, Yuyang [1 ,2 ,3 ]
Cheng, Guang [1 ,2 ,3 ]
Jiang, Shanqing [1 ,4 ]
Dai, Mian [1 ,2 ,3 ]
机构
[1] Southeast Univ, Sch Cyber Sci & Engn, Nanjing, Peoples R China
[2] Minist Educ, Key Lab Comp Network & Informat Integrat, Nanjing, Peoples R China
[3] Southeast Univ, Jiangsu Prov Key Lab Comp Network Technol, Nanjing, Peoples R China
[4] Natl Key Lab Sci & Technol Informat Syst Secur, Beijing, Peoples R China
关键词
Cyber security; Intrusion detection system; Data mining; Feature selection; Ensemble classifier; ALGORITHM; FOREST; MODEL; ATTACKS; IDS;
D O I
10.1016/j.comnet.2020.107247
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Intrusion detection system (IDS) is one of extensively used techniques in a network topology to safeguard the integrity and availability of sensitive assets in the protected systems. Although many supervised and unsupervised learning approaches from the field of machine learning have been used to increase the efficacy of IDSs, it is still a problem for existing intrusion detection algorithms to achieve good performance. First, lots of redundant and irrelevant data in high-dimensional datasets interfere with the classification process of an IDS. Second, an individual classifier may not perform well in the detection of each type of attacks. Third, many models are built for stale datasets, making them less adaptable for novel attacks. Thus, we propose a new intrusion detection framework in this paper, and this framework is based on the feature selection and ensemble learning techniques. In the first step, a heuristic algorithm called CFS-BA is proposed for dimensionality reduction, which selects the optimal subset based on the correlation between features. Then, we introduce an ensemble approach that combines C4.5, Random Forest (RF), and Forest by Penalizing Attributes (Forest PA) algorithms. Finally, voting technique is used to combine the probability distributions of the base learners for attack recognition. The experimental results, using NSL-KDD, AWID, and CIC-IDS2017 datasets, reveal that the proposed CFS-BA-Ensemble method is able to exhibit better performance than other related and state of the art approaches under several metrics.
引用
收藏
页数:17
相关论文
共 50 条
  • [41] An improved PIO feature selection algorithm for IoT network intrusion detection system based on ensemble learning
    Abu Alghanam, Orieb
    Almobaideen, Wesam
    Saadeh, Maha
    Adwan, Omar
    EXPERT SYSTEMS WITH APPLICATIONS, 2023, 213
  • [42] A Feature Selection Based Serial SVM Ensemble Classifier
    Cao, Jianjun
    Lv, Guojun
    Chang, Chen
    Li, Hongmei
    IEEE ACCESS, 2019, 7 : 144516 - 144523
  • [43] Building an Ensemble Learning Based Algorithm for Improving Intrusion Detection System
    Abirami, M. S.
    Yash, Umaretiya
    Singh, Sonal
    ARTIFICIAL INTELLIGENCE AND EVOLUTIONARY COMPUTATIONS IN ENGINEERING SYSTEMS, 2020, 1056 : 635 - 649
  • [44] Efficient feature selection and classification through ensemble method for network intrusion detection on cloud computing
    Krishnaveni, S.
    Sivamohan, S.
    Sridhar, S. S.
    Prabakaran, S.
    CLUSTER COMPUTING-THE JOURNAL OF NETWORKS SOFTWARE TOOLS AND APPLICATIONS, 2021, 24 (03): : 1761 - 1779
  • [45] A Novel Intelligent Ensemble Classifier for Network Intrusion Detection System
    Jabbar, M. A.
    Srinivas, K.
    Reddy, S. Sai Satyanarayana
    PROCEEDINGS OF THE EIGHTH INTERNATIONAL CONFERENCE ON SOFT COMPUTING AND PATTERN RECOGNITION (SOCPAR 2016), 2018, 614 : 490 - 497
  • [46] Efficient feature selection and classification through ensemble method for network intrusion detection on cloud computing
    S. Krishnaveni
    S. Sivamohan
    S. S. Sridhar
    S. Prabakaran
    Cluster Computing, 2021, 24 : 1761 - 1779
  • [47] Chi-Square and PCA Based Feature Selection for Diabetes Detection with Ensemble Classifier
    Rupapara, Vaibhav
    Rustam, Furqan
    Ishaq, Abid
    Lee, Ernesto
    Ashraf, Imran
    INTELLIGENT AUTOMATION AND SOFT COMPUTING, 2023, 36 (02): : 1931 - 1949
  • [48] Classifier ensemble methods in feature selection
    Kiziloz, Hakan Ezgi
    NEUROCOMPUTING, 2021, 419 : 97 - 107
  • [49] An ensemble svm classifier with feature selection
    Hu, Han
    En-en, Ren
    2007 INTERNATIONAL SYMPOSIUM ON COMPUTER SCIENCE & TECHNOLOGY, PROCEEDINGS, 2007, : 6 - 8
  • [50] Network intrusion detection based on ensemble classification and feature selection method for cloud computing
    Krishnaveni, Sivamohan
    Sivamohan, Sivanandam
    Sridhar, Subramanian
    Prabhakaran, Subramani
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2022, 34 (11):