Skip to main content
Top

2019 | OriginalPaper | Chapter

Two-Level Intrusion Detection System in SDN Using Machine Learning

Authors : V. Vetriselvi, P. S. Shruti, Susan Abraham

Published in: ICCCE 2018

Publisher: Springer Singapore

Activate our intelligent search to find suitable subject content or patents.

search-config
loading …

Abstract

Software Defined Networking (SDN), the new paradigm in network architecture is changing how we design, manage, and operate an entire network, making networks more agile, flexible, and scalable. Such admirable features arise from the design factor that, in SDN, the control plane is decoupled from the data plane and instead resides on a centralized controller that has complete knowledge of the network. As SDN continues to flourish, security in this realm remains a critical issue. An effective intrusion detection system (IDS), which can monitor real-time traffic, detect and also identify the class of attack would greatly help in combating this problem. This work aims to heighten the security of SDN environments by building an IDS using the principles of machine learning and genetic algorithms. The proposed IDS is divided into two stages, the former to detect the attacks and the latter to categorize them. These stages reside in the switches and the controller of the network respectively. This approach reduces the dependency and the load on the controller, as well as providing a high attack detection rate.

Dont have a licence yet? Then find out more about our products and how to get one now:

Springer Professional "Wirtschaft+Technik"

Online-Abonnement

Mit Springer Professional "Wirtschaft+Technik" erhalten Sie Zugriff auf:

  • über 102.000 Bücher
  • über 537 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Maschinenbau + Werkstoffe
  • Versicherung + Risiko

Jetzt Wissensvorsprung sichern!

Springer Professional "Technik"

Online-Abonnement

Mit Springer Professional "Technik" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 390 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Maschinenbau + Werkstoffe




 

Jetzt Wissensvorsprung sichern!

Springer Professional "Wirtschaft"

Online-Abonnement

Mit Springer Professional "Wirtschaft" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 340 Zeitschriften

aus folgenden Fachgebieten:

  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Versicherung + Risiko




Jetzt Wissensvorsprung sichern!

Literature
1.
go back to reference O’Callaghan G, Scott-Hayward S, Sezer S (2013) SDN security: a survey. In: IEEE SDN for future networks and services (SDN4FNS), Nov 11–13, pp 1–7. IEEE O’Callaghan G, Scott-Hayward S, Sezer S (2013) SDN security: a survey. In: IEEE SDN for future networks and services (SDN4FNS), Nov 11–13, pp 1–7. IEEE
2.
go back to reference Sayeed A, Sayeed MA, Saxena S (2015) Intrusion detection system based on software defined network firewall. In: 1st international conference on next generation computing technologies (NGCT), Sept 4–5. Dehradun Sayeed A, Sayeed MA, Saxena S (2015) Intrusion detection system based on software defined network firewall. In: 1st international conference on next generation computing technologies (NGCT), Sept 4–5. Dehradun
3.
go back to reference Ahmad I, Barati M, Muda Z, Sarvari S (2015) GA and SVM algorithms for selection of hybrid feature in intrusion detection system. Int Rev Comput Softw (I.RE.CO.S.) 10(3):265–270 Ahmad I, Barati M, Muda Z, Sarvari S (2015) GA and SVM algorithms for selection of hybrid feature in intrusion detection system. Int Rev Comput Softw (I.RE.CO.S.) 10(3):265–270
4.
go back to reference Mousavi SM, St-Hilaire M (2015) Early detection of DDoS attacks against SDN controllers. In: International conference on computing, networking and communications, Feb 16–19. California Mousavi SM, St-Hilaire M (2015) Early detection of DDoS attacks against SDN controllers. In: International conference on computing, networking and communications, Feb 16–19. California
5.
go back to reference Mantur B, Desai A, Nagegowda KS (2015) Centralized control signature-based firewall and statistical-based network intrusion detection system (NIDS) in software defined networks (SDN). Emerg Res Comput Inf Commun Appl 497–506 Mantur B, Desai A, Nagegowda KS (2015) Centralized control signature-based firewall and statistical-based network intrusion detection system (NIDS) in software defined networks (SDN). Emerg Res Comput Inf Commun Appl 497–506
6.
go back to reference Golmah V (2014) An efficient hybrid intrusion detection system based on C5.0 and SVM. Int J Database Theory Appl 7(2):59–70CrossRef Golmah V (2014) An efficient hybrid intrusion detection system based on C5.0 and SVM. Int J Database Theory Appl 7(2):59–70CrossRef
7.
go back to reference Abouzakhar NS, Jain R (2013) A comparative study of hidden Markov model and support vector machine in anomaly intrusion detection. J Internet Technol Secured Trans (JITST) 2(3):607–615 Abouzakhar NS, Jain R (2013) A comparative study of hidden Markov model and support vector machine in anomaly intrusion detection. J Internet Technol Secured Trans (JITST) 2(3):607–615
Metadata
Title
Two-Level Intrusion Detection System in SDN Using Machine Learning
Authors
V. Vetriselvi
P. S. Shruti
Susan Abraham
Copyright Year
2019
Publisher
Springer Singapore
DOI
https://doi.org/10.1007/978-981-13-0212-1_47