Poster: Speeding Up Network Intrusion Detection

被引:0
|
作者
Amado, Joao Romeiras [1 ]
Signorello, Salvatore [2 ]
Correia, Miguel [1 ]
Ramos, Fernando [1 ]
机构
[1] Univ Lisbon, Inst Super Tecn, Lisbon, Portugal
[2] Univ Lisbon, Fac Ciencias, Lisbon, Portugal
关键词
NIDS; programmable data planes; sketches;
D O I
10.1109/icnp49622.2020.9259349
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Modern network data planes have enabled new measurement approaches, including efficient sketch-based techniques with provable trade-offs between memory and accuracy, directly in the data plane, at line rate. We thus ask the question: can one leverage this richer measurement plane to improve network intrusion detection? Our answer is SPID, a push-based, feature-rich network monitoring approach to assist learning-based attack detection. SPID switches run a diverse set of measurement primitives and proactively push measurements to the monitoring system when relevant changes occur. Network measurements are then fed as input features to a classifier based on unsupervised learning to detect ongoing attacks, as they occur. In consequence, SPID aims to reduce attack detection time, when comparing to existing solutions present in large scale networks.
引用
收藏
页数:2
相关论文
共 50 条
  • [1] POSTER: SMURFEN: A Rule Sharing Collaborative Intrusion Detection Network
    Fung, Carol
    Zhu, Quanyan
    Boutaba, Raouf
    Basar, Tamer
    PROCEEDINGS OF THE 18TH ACM CONFERENCE ON COMPUTER & COMMUNICATIONS SECURITY (CCS 11), 2011, : 761 - 763
  • [2] SPEEDING-UP THE DETECTION PHASE
    KLEPPE, B
    MER-MARINE ENGINEERS REVIEW, 1995, : 19 - 19
  • [3] Poster: Developing an Intrusion Detection System for Cloud Computing
    Dang Duy Thang
    Le Hoai Nam
    Nguyen Tan Khoi
    MOBISYS'16: COMPANION COMPANION PUBLICATION OF THE 14TH ANNUAL INTERNATIONAL CONFERENCE ON MOBILE SYSTEMS, APPLICATIONS, AND SERVICES, 2016, : 20 - 20
  • [4] NETWORK INTRUSION DETECTION
    MUKHERJEE, B
    HEBERLEIN, LT
    LEVITT, KN
    IEEE NETWORK, 1994, 8 (03): : 26 - 41
  • [5] Poster Abstract: A Semi-Supervised Approach for Network Intrusion Detection Using Generative Adversarial Networks
    Jeong, Hyejeong
    Yu, Jieun
    Lee, Wonjun
    IEEE CONFERENCE ON COMPUTER COMMUNICATIONS WORKSHOPS (IEEE INFOCOM WKSHPS 2021), 2021,
  • [6] Speeding up the detection of evolutive tandem repeats
    Groult, R
    Léonard, M
    Mouchard, L
    THEORETICAL COMPUTER SCIENCE, 2004, 310 (1-3) : 309 - 328
  • [7] Speeding up targeted genetic variants detection
    Yufang Guo
    Nature Food, 2022, 3 : 674 - 674
  • [8] Heuristics approach to speeding up saliency detection
    Rajankar, Omprakash S.
    Kolekar, Uttam D.
    Talbar, Sanjay N.
    SIGNAL IMAGE AND VIDEO PROCESSING, 2019, 13 (03) : 465 - 473
  • [9] Speeding up targeted genetic variants detection
    Guo, Yufang
    NATURE FOOD, 2022, 3 (09): : 674 - 674
  • [10] Heuristics approach to speeding up saliency detection
    Omprakash S. Rajankar
    Uttam D. Kolekar
    Sanjay N. Talbar
    Signal, Image and Video Processing, 2019, 13 : 465 - 473