A distributed ensemble design based intrusion detection system using fog computing to protect the internet of things networks

被引:87
|
作者
Kumar, Prabhat [1 ]
Gupta, Govind P. [1 ]
Tripathi, Rakesh [1 ]
机构
[1] Natl Inst Technol, Dept Informat Technol, Raipur 492010, CG, India
关键词
Intrusion detection system; Anomaly detection; Ensemble learning; Fog computing; Internet of things (IoT); Feature selection; SECURITY;
D O I
10.1007/s12652-020-02696-3
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
With the development of internet of things (IoT), capabilities of computing, networking infrastructure, storage of data and management have come very close to the edge of networks. This has accelerated the necessity of Fog computing paradigm. Due to availability of Internet, most of our business operations are integrated with IoT platform. Fog computing has enhanced the strategy of collecting and processing, huge amount of data. On the other hand, attacks and malicious activities has adverse consequences on the development of IoT, Fog, and cloud computing. This has led to development of many security models using fog computing to protect IoT network. Therefore, for dynamic and highly scalable IoT environment, a distributed architecture based intrusion detection system (IDS) is required that can distribute the existing centralized computing to local fog nodes and can efficiently detect modern IoT attacks. This paper proposes a novel distributed ensemble design based IDS using Fog computing, which combines k-nearest neighbors, XGBoost, and Gaussian naive Bayes as first-level individual learners. At second-level, the prediction results obtained from first level is used by Random Forest for final classification. Most of the existing proposals are tested using KDD99 or NSL-KDD dataset. However, these datasets are obsolete and lack modern IoT-based attacks. In this paper, UNSW-NB15 and actual IoT-based dataset namely, DS2OS are used for verifying the effectiveness of the proposed system. The experimental result revealed that the proposed distributed IDS with UNSW-NB15 can achieve higher detection rate upto 71.18% for Backdoor, 68.98% for Analysis, 92.25% for Reconnaissance and 85.42% for DoS attacks. Similarly, with DS2OS dataset, detection rate is upto 99.99% for most of the attack vectors.
引用
收藏
页码:9555 / 9572
页数:18
相关论文
共 50 条
  • [21] Lightweight Intrusion Detection Model of the Internet of Things with Hybrid Cloud-Fog Computing
    Zhao, Guosheng
    Wang, Yang
    Wang, Jian
    SECURITY AND COMMUNICATION NETWORKS, 2023, 2023
  • [22] Design of Anomaly-Based Intrusion Detection System Using Fog Computing for IoT Network
    Govind P. Prabhat Kumar
    Rakesh Gupta
    Automatic Control and Computer Sciences, 2021, 55 : 137 - 147
  • [23] Coding for Distributed Fog Computing in Internet of Mobile Things
    Yue, Jing
    Xiao, Ming
    IEEE TRANSACTIONS ON MOBILE COMPUTING, 2021, 20 (04) : 1337 - 1350
  • [24] Optimized Ensemble Classifier Based Network Intrusion Detection System for RPL Based Internet of Things
    Prakash, P. Jaya
    Lalitha, B.
    WIRELESS PERSONAL COMMUNICATIONS, 2022, 125 (04) : 3603 - 3626
  • [25] Intrusion Detection and Prevention in Cloud, Fog, and Internet of Things
    Zhang, Xuyun
    Yuan, Yuan
    Zhou, Zhili
    Li, Shancang
    Qi, Lianyong
    Puthal, Deepak
    SECURITY AND COMMUNICATION NETWORKS, 2019, 2019
  • [26] Optimized Ensemble Classifier Based Network Intrusion Detection System for RPL Based Internet of Things
    P. Jaya Prakash
    B. Lalitha
    Wireless Personal Communications, 2022, 125 : 3603 - 3626
  • [27] Logistic Regression Ensemble Classifier for Intrusion Detection System in Internet of Things
    Chalichalamala, Silpa
    Govindan, Niranjana
    Kasarapu, Ramani
    SENSORS, 2023, 23 (23)
  • [28] Scalable anomaly-based intrusion detection for secure Internet of Things using generative adversarial networks in fog environment
    Yao, Wei
    Shi, Han
    Zhao, Hai
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2023, 214
  • [29] A Trust Based Distributed Intrusion Detection Mechanism for Internet of Things
    Khan, Zeeshan Ali
    Herrmann, Peter
    2017 IEEE 31ST INTERNATIONAL CONFERENCE ON ADVANCED INFORMATION NETWORKING AND APPLICATIONS (AINA), 2017, : 1169 - 1176
  • [30] An Anomaly-Based Intrusion Detection System for Internet of Medical Things Networks
    Zachos, Georgios
    Essop, Ismael
    Mantas, Georgios
    Porfyrakis, Kyriakos
    Ribeiro, Jose C.
    Rodriguez, Jonathan
    ELECTRONICS, 2021, 10 (21)