Skip to main content

2017 | OriginalPaper | Buchkapitel

Dynamic Latency Sensitivity Recognition: An Application to Energy Saving

verfasst von : S. Al Haj Baddar, A. Merlo, M. Migliardi, F. Palmieri

Erschienen in: Green, Pervasive, and Cloud Computing

Verlag: Springer International Publishing

Aktivieren Sie unsere intelligente Suche, um passende Fachinhalte oder Patente zu finden.

search-config
loading …

Abstract

In the world of connected everything, network attacks and cyber-security breaches may cause huge monetary damages and even endanger lives; hence, full sanitization of the Internet traffic is a real necessity. In this paper we will apply a dynamic statistical analysis to separate latency sensitive traffic from the latency insensitive one at the source. Then, we will calculate the energy savings that can be achieved by identifying and dropping all the unwanted portion of the latency insensitive traffic directly at the source. This value represents an upper-bound to the actual amount of energy that can be saved by applying our adaptive aggressive intrusion detection technique to latency insensitive traffic, in fact the actual value depends on the actual load of the network and its capability to spread the hunt for malicious packet among all the network nodes. The main contribution of this paper is to show that energy savings through aggressive intrusion detection may be achieved without burdening latency sensitive traffic with delays that may render it unusable, nonetheless, as a side effect of early removal of unwanted traffic from the network flows is to reduce the network load, the traffic reduction so obtained allows sanitizing even the latency sensitive traffic with a reduced risk of excessive delays due to resources allocation and traffic forecasting errors.

Sie haben noch keine Lizenz? Dann Informieren Sie sich jetzt über unsere Produkte:

Springer Professional "Wirtschaft+Technik"

Online-Abonnement

Mit Springer Professional "Wirtschaft+Technik" erhalten Sie Zugriff auf:

  • über 102.000 Bücher
  • über 537 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Maschinenbau + Werkstoffe
  • Versicherung + Risiko

Jetzt Wissensvorsprung sichern!

Springer Professional "Technik"

Online-Abonnement

Mit Springer Professional "Technik" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 390 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Maschinenbau + Werkstoffe




 

Jetzt Wissensvorsprung sichern!

Springer Professional "Wirtschaft"

Online-Abonnement

Mit Springer Professional "Wirtschaft" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 340 Zeitschriften

aus folgenden Fachgebieten:

  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Versicherung + Risiko




Jetzt Wissensvorsprung sichern!

Literatur
1.
Zurück zum Zitat Ashfaq, R.A.R., Wang, X.-Z., Huang, J.Z., Abbas, H., He, Y.-L.: Fuzziness based semi-supervised learning approach for intrusion detection system. Inf. Sci. 378, 484–497 (2017)CrossRef Ashfaq, R.A.R., Wang, X.-Z., Huang, J.Z., Abbas, H., He, Y.-L.: Fuzziness based semi-supervised learning approach for intrusion detection system. Inf. Sci. 378, 484–497 (2017)CrossRef
2.
Zurück zum Zitat Al-Haj Baddar, S.W., Mauro, A., Migliardi, M.: SKETURE: a sketch-based packet analysis tool. In: Proceedings of the 7th ACM CCS International Workshop on Managing Insider Security Threats, MIST 2015, Denver, Colorado, USA, October 16, pp. 67–70 (2015) Al-Haj Baddar, S.W., Mauro, A., Migliardi, M.: SKETURE: a sketch-based packet analysis tool. In: Proceedings of the 7th ACM CCS International Workshop on Managing Insider Security Threats, MIST 2015, Denver, Colorado, USA, October 16, pp. 67–70 (2015)
3.
Zurück zum Zitat Al-Haj Baddar, S.W., Merlo, A., Migliardi, M.: Generating statistical insights into network behavior using SKETURE. J. High Speed Netw. 22(1), 65–76 (2016)CrossRef Al-Haj Baddar, S.W., Merlo, A., Migliardi, M.: Generating statistical insights into network behavior using SKETURE. J. High Speed Netw. 22(1), 65–76 (2016)CrossRef
4.
Zurück zum Zitat Bhuyan, M.H., Bhattacharyya, D.K., Kalita, J.K.: Network anomaly detection: methods, systems and tools. IEEE Commun. Surv. Tutorials 16(1), 303–336 (2014)CrossRef Bhuyan, M.H., Bhattacharyya, D.K., Kalita, J.K.: Network anomaly detection: methods, systems and tools. IEEE Commun. Surv. Tutorials 16(1), 303–336 (2014)CrossRef
5.
Zurück zum Zitat Lan, K.C., Hussain, A., Dutta, D.: Effect of malicious traffic on the network (2003) Lan, K.C., Hussain, A., Dutta, D.: Effect of malicious traffic on the network (2003)
6.
Zurück zum Zitat Desale, K.S., Kumathekar, C.N., Chavan, A.P.: Efficient intrusion detection system using stream data mining classification technique. In: 2015 International Conference on Computing Communication Control and Automation, pp. 469–473, February 2015 Desale, K.S., Kumathekar, C.N., Chavan, A.P.: Efficient intrusion detection system using stream data mining classification technique. In: 2015 International Conference on Computing Communication Control and Automation, pp. 469–473, February 2015
7.
Zurück zum Zitat Hassanzadeh, A., Altaweel, A., Stoleru, R.: Traffic-and-resource-aware intrusion detection in wireless mesh networks. Ad Hoc Netw. 21, 18–41 (2014)CrossRef Hassanzadeh, A., Altaweel, A., Stoleru, R.: Traffic-and-resource-aware intrusion detection in wireless mesh networks. Ad Hoc Netw. 21, 18–41 (2014)CrossRef
8.
Zurück zum Zitat Ji, S.-Y., Jeong, B.-K., Choi, S., Jeong, D.H.: A multi-level intrusion detection method for abnormal network behaviors. J. Netw. Comput. Appl. 62, 9–17 (2016)CrossRef Ji, S.-Y., Jeong, B.-K., Choi, S., Jeong, D.H.: A multi-level intrusion detection method for abnormal network behaviors. J. Netw. Comput. Appl. 62, 9–17 (2016)CrossRef
9.
Zurück zum Zitat Leder, F., Werner, T., Martini, P.: Proactive botnet countermeasures - an offensive approach. In: Cooperative Cyber Defence Centre of Excellence (2009) Leder, F., Werner, T., Martini, P.: Proactive botnet countermeasures - an offensive approach. In: Cooperative Cyber Defence Centre of Excellence (2009)
10.
Zurück zum Zitat Liao, H.-J., Lin, C.-H.R., Lin, Y.-C., Tung, K.-Y.: Intrusion detection system: a comprehensive review. J. Netw. Comput. Appl. 36(1), 16–24 (2013)CrossRef Liao, H.-J., Lin, C.-H.R., Lin, Y.-C., Tung, K.-Y.: Intrusion detection system: a comprehensive review. J. Netw. Comput. Appl. 36(1), 16–24 (2013)CrossRef
11.
Zurück zum Zitat Lin, W.-C., Ke, S.-W., Tsai, C.-F.: CANN: an intrusion detection system based on combining cluster centers and nearest neighbors. Knowl.-Based Syst. 78, 13–21 (2015)CrossRef Lin, W.-C., Ke, S.-W., Tsai, C.-F.: CANN: an intrusion detection system based on combining cluster centers and nearest neighbors. Knowl.-Based Syst. 78, 13–21 (2015)CrossRef
12.
Zurück zum Zitat Mallikarjunan, K.N., Muthupriya, K., Shalinie, S.M.: A survey of distributed denial of service attack. In: 2016 10th International Conference on Intelligent Systems and Control (ISCO), pp. 1–6, January 2016 Mallikarjunan, K.N., Muthupriya, K., Shalinie, S.M.: A survey of distributed denial of service attack. In: 2016 10th International Conference on Intelligent Systems and Control (ISCO), pp. 1–6, January 2016
13.
Zurück zum Zitat Merlo, A., Spadacini, E., Migliardi, M.: IPS-based reduction of network energy consumption. Logic J. IGPL 24(6), 982 (2016)MathSciNetCrossRef Merlo, A., Spadacini, E., Migliardi, M.: IPS-based reduction of network energy consumption. Logic J. IGPL 24(6), 982 (2016)MathSciNetCrossRef
14.
Zurück zum Zitat Migliardi, M., Merlo, A.: Improving energy efficiency in distributed intrusion detection systems. J. High Speed Netw. 19(3), 251–264 (2013) Migliardi, M., Merlo, A.: Improving energy efficiency in distributed intrusion detection systems. J. High Speed Netw. 19(3), 251–264 (2013)
15.
Zurück zum Zitat Mitchell, R., Chen, I.-R.: A survey of intrusion detection in wireless network applications. Comput. Commun. 42, 1–23 (2014)CrossRef Mitchell, R., Chen, I.-R.: A survey of intrusion detection in wireless network applications. Comput. Commun. 42, 1–23 (2014)CrossRef
16.
Zurück zum Zitat Modi, C., Patel, D., Borisaniya, B., Patel, H., Patel, A., Rajarajan, M.: Review: a survey of intrusion detection techniques in cloud. J. Netw. Comput. Appl. 36(1), 42–57 (2013)CrossRef Modi, C., Patel, D., Borisaniya, B., Patel, H., Patel, A., Rajarajan, M.: Review: a survey of intrusion detection techniques in cloud. J. Netw. Comput. Appl. 36(1), 42–57 (2013)CrossRef
17.
Zurück zum Zitat Modi, C., Patel, D., Borisaniya, B., Patel, H., Patel, A., Rajarajan, M.: A survey of intrusion detection techniques in cloud. J. Netw. Comput. Appl. 36(1), 42–57 (2013)CrossRef Modi, C., Patel, D., Borisaniya, B., Patel, H., Patel, A., Rajarajan, M.: A survey of intrusion detection techniques in cloud. J. Netw. Comput. Appl. 36(1), 42–57 (2013)CrossRef
18.
Zurück zum Zitat Noorbehbahani, F., Fanian, A., Mousavi, R., Hasannejad, H.: An incremental intrusion detection system using a new semi-supervised stream classification method. Int. J. Commun. Syst. 30(4) (2017). e3002-n/a, e3002 IJCS-15-0106.R1 Noorbehbahani, F., Fanian, A., Mousavi, R., Hasannejad, H.: An incremental intrusion detection system using a new semi-supervised stream classification method. Int. J. Commun. Syst. 30(4) (2017). e3002-n/a, e3002 IJCS-15-0106.R1
19.
Zurück zum Zitat Patel, A., Taghavi, M., Bakhtiyari, K., Júnior, J.C.: An intrusion detection and prevention system in cloud computing: a systematic review. J. Netw. Comput. Appl. 36(1), 25–41 (2013)CrossRef Patel, A., Taghavi, M., Bakhtiyari, K., Júnior, J.C.: An intrusion detection and prevention system in cloud computing: a systematic review. J. Netw. Comput. Appl. 36(1), 25–41 (2013)CrossRef
20.
Zurück zum Zitat Şen, S., Clark, J.A., Tapiador, J.E.: Power-aware intrusion detection in mobile ad hoc networks. In: Zheng, J., Mao, S., Midkiff, S.F., Zhu, H. (eds.) ADHOCNETS 2009. LNICSSITE, vol. 28, pp. 224–239. Springer, Heidelberg (2010). doi:10.1007/978-3-642-11723-7_15 CrossRef Şen, S., Clark, J.A., Tapiador, J.E.: Power-aware intrusion detection in mobile ad hoc networks. In: Zheng, J., Mao, S., Midkiff, S.F., Zhu, H. (eds.) ADHOCNETS 2009. LNICSSITE, vol. 28, pp. 224–239. Springer, Heidelberg (2010). doi:10.​1007/​978-3-642-11723-7_​15 CrossRef
21.
Zurück zum Zitat Tsikoudis, N., Papadogiannakis, A., Markatos, E.P.: LEoNIDS: a low-latency and energy-efficient network-level intrusion detection system. IEEE Trans. Emerg. Top. Comput. 4(1), 142–155 (2016)CrossRef Tsikoudis, N., Papadogiannakis, A., Markatos, E.P.: LEoNIDS: a low-latency and energy-efficient network-level intrusion detection system. IEEE Trans. Emerg. Top. Comput. 4(1), 142–155 (2016)CrossRef
22.
Zurück zum Zitat Viegas, E., Santin, A.O., França, A., Jasinski, R., Pedroni, V.A., Oliveira, L.S.: Towards an energy-efficient anomaly-based intrusion detection engine for embedded systems. IEEE Trans. Comput. 66(1), 163–177 (2017)MathSciNetCrossRefMATH Viegas, E., Santin, A.O., França, A., Jasinski, R., Pedroni, V.A., Oliveira, L.S.: Towards an energy-efficient anomaly-based intrusion detection engine for embedded systems. IEEE Trans. Comput. 66(1), 163–177 (2017)MathSciNetCrossRefMATH
23.
Zurück zum Zitat Wang, W., Guyet, T., Quiniou, R., Cordier, M.-O., Masseglia, F., Zhang, X.: Autonomic intrusion detection: adaptively detecting anomalies over unlabeled audit data streams in computer networks. Knowl.-Based Syst. 70, 103–117 (2014)CrossRef Wang, W., Guyet, T., Quiniou, R., Cordier, M.-O., Masseglia, F., Zhang, X.: Autonomic intrusion detection: adaptively detecting anomalies over unlabeled audit data streams in computer networks. Knowl.-Based Syst. 70, 103–117 (2014)CrossRef
24.
Zurück zum Zitat Weller-Fahy, D.J., Borghetti, B.J., Sodemann, A.A.: A survey of distance and similarity measures used within network intrusion anomaly detection. IEEE Commun. Surv. Tutorials 17(1), 70–91 (2015)CrossRef Weller-Fahy, D.J., Borghetti, B.J., Sodemann, A.A.: A survey of distance and similarity measures used within network intrusion anomaly detection. IEEE Commun. Surv. Tutorials 17(1), 70–91 (2015)CrossRef
25.
Zurück zum Zitat Zhu, H., Du, S., Gao, Z., Dong, M., Cao, Z.: A probabilistic misbehavior detection scheme toward efficient trust establishment in delay-tolerant networks. IEEE Trans. Parallel Distrib. Syst. 25(1), 22–32 (2014)CrossRef Zhu, H., Du, S., Gao, Z., Dong, M., Cao, Z.: A probabilistic misbehavior detection scheme toward efficient trust establishment in delay-tolerant networks. IEEE Trans. Parallel Distrib. Syst. 25(1), 22–32 (2014)CrossRef
Metadaten
Titel
Dynamic Latency Sensitivity Recognition: An Application to Energy Saving
verfasst von
S. Al Haj Baddar
A. Merlo
M. Migliardi
F. Palmieri
Copyright-Jahr
2017
DOI
https://doi.org/10.1007/978-3-319-57186-7_12