A distributed ensemble design based intrusion detection system using fog computing to protect the internet of things networks

被引:87
|
作者
Kumar, Prabhat [1 ]
Gupta, Govind P. [1 ]
Tripathi, Rakesh [1 ]
机构
[1] Natl Inst Technol, Dept Informat Technol, Raipur 492010, CG, India
关键词
Intrusion detection system; Anomaly detection; Ensemble learning; Fog computing; Internet of things (IoT); Feature selection; SECURITY;
D O I
10.1007/s12652-020-02696-3
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
With the development of internet of things (IoT), capabilities of computing, networking infrastructure, storage of data and management have come very close to the edge of networks. This has accelerated the necessity of Fog computing paradigm. Due to availability of Internet, most of our business operations are integrated with IoT platform. Fog computing has enhanced the strategy of collecting and processing, huge amount of data. On the other hand, attacks and malicious activities has adverse consequences on the development of IoT, Fog, and cloud computing. This has led to development of many security models using fog computing to protect IoT network. Therefore, for dynamic and highly scalable IoT environment, a distributed architecture based intrusion detection system (IDS) is required that can distribute the existing centralized computing to local fog nodes and can efficiently detect modern IoT attacks. This paper proposes a novel distributed ensemble design based IDS using Fog computing, which combines k-nearest neighbors, XGBoost, and Gaussian naive Bayes as first-level individual learners. At second-level, the prediction results obtained from first level is used by Random Forest for final classification. Most of the existing proposals are tested using KDD99 or NSL-KDD dataset. However, these datasets are obsolete and lack modern IoT-based attacks. In this paper, UNSW-NB15 and actual IoT-based dataset namely, DS2OS are used for verifying the effectiveness of the proposed system. The experimental result revealed that the proposed distributed IDS with UNSW-NB15 can achieve higher detection rate upto 71.18% for Backdoor, 68.98% for Analysis, 92.25% for Reconnaissance and 85.42% for DoS attacks. Similarly, with DS2OS dataset, detection rate is upto 99.99% for most of the attack vectors.
引用
收藏
页码:9555 / 9572
页数:18
相关论文
共 50 条
  • [41] A Novel Ensemble of Hybrid Intrusion Detection System for Detecting Internet of Things Attacks
    Khraisat, Ansam
    Gondal, Iqbal
    Vamplew, Peter
    Kamruzzaman, Joarder
    Alazab, Ammar
    ELECTRONICS, 2019, 8 (11)
  • [42] FOCUS: A Fog Computing-based Security System for the Internet of Things
    Alharbi, Salem
    Rodriguez, Peter
    Maharaja, Rajaputhri
    Iyer, Prashant
    Bose, Nivethitha
    Ye, Zilong
    2018 15TH IEEE ANNUAL CONSUMER COMMUNICATIONS & NETWORKING CONFERENCE (CCNC), 2018,
  • [43] Prototyping an Anomaly-Based Intrusion Detection System for Internet of Medical Things Networks
    Zachos, Georgios
    Mantas, Georgios
    Essop, Ismael
    Porfyrakis, Kyriakos
    Ribeiro, Jose C.
    Rodriguez, Jonathan
    2022 IEEE 27TH INTERNATIONAL WORKSHOP ON COMPUTER AIDED MODELING AND DESIGN OF COMMUNICATION LINKS AND NETWORKS (CAMAD), 2022, : 179 - 183
  • [44] Hardening of the Internet of Things by using an intrusion detection system based on deep learning
    Varastan, Bahman
    Jamali, Shahram
    Fotohi, Reza
    CLUSTER COMPUTING-THE JOURNAL OF NETWORKS SOFTWARE TOOLS AND APPLICATIONS, 2024, 27 (03): : 2465 - 2488
  • [45] Enhancing Network Intrusion Detection Using an Ensemble Voting Classifier for Internet of Things
    Farooqi, Ashfaq Hussain
    Akhtar, Shahzaib
    Rahman, Hameedur
    Sadiq, Touseef
    Abbass, Waseem
    SENSORS, 2024, 24 (01)
  • [46] Optimizing Resources Allocation for Fog Computing-Based Internet of Things Networks
    Li, Xi
    Liu, Yiming
    Ji, Hong
    Zhang, Heli
    Leung, Victor C. M.
    IEEE ACCESS, 2019, 7 : 64907 - 64922
  • [47] Design of Intrusion Detection System using Ensemble Learning Technique in Cloud Computing Environment
    Bingu, Rajesh
    Jothilakshmi, S.
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2023, 14 (05) : 751 - 764
  • [48] Design of Intrusion Detection System for Internet of Things Based on Improved BP Neural Network
    Yang, Aimin
    Zhuansun, Yunxi
    Liu, Chenshuai
    Li, Jie
    Zhang, Chunying
    IEEE ACCESS, 2019, 7 : 106043 - 106052
  • [49] Network intrusion detection system for Internet of Things based on enhanced flower pollination algorithm and ensemble classifier
    Gangula, Rekha
    Mohan, Murali, V
    Kumar, Ranjeeth M.
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2022, 34 (21):
  • [50] Distributed Fog Computing for Internet of Things (IoT) Based Ambient Data Processing and Analysis
    Ahmed, Mehreen
    Mumtaz, Rafia
    Zaidi, Syed Mohammad Hassan
    Hafeez, Maryam
    Zaidi, Syed Ali Raza
    Ahmad, Muneer
    ELECTRONICS, 2020, 9 (11) : 1 - 20