Poster: Speeding Up Network Intrusion Detection

被引:0
|
作者
Amado, Joao Romeiras [1 ]
Signorello, Salvatore [2 ]
Correia, Miguel [1 ]
Ramos, Fernando [1 ]
机构
[1] Univ Lisbon, Inst Super Tecn, Lisbon, Portugal
[2] Univ Lisbon, Fac Ciencias, Lisbon, Portugal
关键词
NIDS; programmable data planes; sketches;
D O I
10.1109/icnp49622.2020.9259349
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Modern network data planes have enabled new measurement approaches, including efficient sketch-based techniques with provable trade-offs between memory and accuracy, directly in the data plane, at line rate. We thus ask the question: can one leverage this richer measurement plane to improve network intrusion detection? Our answer is SPID, a push-based, feature-rich network monitoring approach to assist learning-based attack detection. SPID switches run a diverse set of measurement primitives and proactively push measurements to the monitoring system when relevant changes occur. Network measurements are then fed as input features to a classifier based on unsupervised learning to detect ongoing attacks, as they occur. In consequence, SPID aims to reduce attack detection time, when comparing to existing solutions present in large scale networks.
引用
收藏
页数:2
相关论文
共 50 条
  • [31] An intrusion detection system integrating network-level intrusion detection and host-level intrusion detection
    Liu, Jiannan
    Xiao, Kun
    Luo, Lei
    Li, Yun
    Chen, Lirong
    2020 IEEE 20TH INTERNATIONAL CONFERENCE ON SOFTWARE QUALITY, RELIABILITY, AND SECURITY (QRS 2020), 2020, : 122 - 129
  • [32] Speeding up
    Thomas, S.
    Chemical Engineer, 2001, (722):
  • [33] Speeding up
    Thomas, S
    TCE, 2001, (722): : 18 - 18
  • [34] Methods of Speeding up of Diameter Constrained Network Reliability Calculation
    Migov, Denis A.
    Nesterov, Sergei N.
    COMPUTATIONAL SCIENCE AND ITS APPLICATIONS - ICCSA 2015, PT II, 2015, 9156 : 121 - 133
  • [35] METHOD OF SPEEDING UP CONVERGENCE OF ITERATIONAL CALCULATION OF A HYDRAULIC NETWORK
    ONUCHIN, VY
    POTERYAE.EI
    ELYUKIM, SB
    THERMAL ENGINEERING, 1974, 21 (02) : 98 - 98
  • [36] SPEEDING UP INNOVATION: BUILDING NETWORK STRUCTURES FOR PARALLEL INNOVATION
    Sorensen, Flemming
    Mattsson, Jan
    INTERNATIONAL JOURNAL OF INNOVATION MANAGEMENT, 2016, 20 (02)
  • [37] Speeding up neural network execution: An application to speech recognition
    Albesano, D
    Mana, F
    Gemello, R
    NEURAL NETWORKS FOR SIGNAL PROCESSING VI, 1996, : 579 - 588
  • [38] Speeding up column generation for robust wireless network planning
    Classen, Grit
    Koster, Arie M. C. A.
    Schmeink, Anke
    EURO JOURNAL ON COMPUTATIONAL OPTIMIZATION, 2013, 1 (3-4) : 253 - 281
  • [39] Markov chains in network intrusion detection
    Hixon, R
    Gruenbacher, DA
    PROCEEDINGS FROM THE FIFTH IEEE SYSTEMS, MAN AND CYBERNETICS INFORMATION ASSURANCE WORKSHOP, 2004, : 432 - 433
  • [40] Visualizing network data for intrusion detection
    Abdullah, K
    Lee, A
    Conti, G
    Copeland, JA
    PROCEEDINGS FROM THE SIXTH ANNUAL IEEE SYSTEMS, MAN AND CYBERNETICS INFORMATION ASSURANCE WORKSHOP, 2005, : 100 - 108