{"title":"针对SDN网络采用深度学习方法的入侵检测系统","authors":"Sarra Boukria, M. Guerroumi","doi":"10.1109/ICTAACS48474.2019.8988138","DOIUrl":null,"url":null,"abstract":"Software Defined Network (SDN) is considered as the main component of the next generation network. Security, in this environment, has very challenges and risks. Attacking SDN controller or injecting false flow rules could affect the network and block the entire services. To enhance the SDN network security, we propose an anomaly-based intrusion detection system using deep learning approach. This solution aims to protect the communication channel between the SDN control layer and the SDN infrastructure layer against false data injection attack, and to detect any attempt of attack in SND southbound side. We analyze the flows that circulate in the SDN network, we use the logarithm function followed by the Min/Max scalar technique to normalize the flows features. For the flow classification, we exploit the Relu and Softmax functions. We test the proposed system with CICIDS2017 dataset on an experimental platform combining Mininet environment and ONOS controller. The evaluation results demonstrate the effectiveness and efficiency of the proposed security solution.","PeriodicalId":406766,"journal":{"name":"2019 International Conference on Theoretical and Applicative Aspects of Computer Science (ICTAACS)","volume":"120 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2019-12-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"9","resultStr":"{\"title\":\"Intrusion detection system for SDN network using deep learning approach\",\"authors\":\"Sarra Boukria, M. Guerroumi\",\"doi\":\"10.1109/ICTAACS48474.2019.8988138\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Software Defined Network (SDN) is considered as the main component of the next generation network. Security, in this environment, has very challenges and risks. Attacking SDN controller or injecting false flow rules could affect the network and block the entire services. To enhance the SDN network security, we propose an anomaly-based intrusion detection system using deep learning approach. This solution aims to protect the communication channel between the SDN control layer and the SDN infrastructure layer against false data injection attack, and to detect any attempt of attack in SND southbound side. We analyze the flows that circulate in the SDN network, we use the logarithm function followed by the Min/Max scalar technique to normalize the flows features. For the flow classification, we exploit the Relu and Softmax functions. We test the proposed system with CICIDS2017 dataset on an experimental platform combining Mininet environment and ONOS controller. The evaluation results demonstrate the effectiveness and efficiency of the proposed security solution.\",\"PeriodicalId\":406766,\"journal\":{\"name\":\"2019 International Conference on Theoretical and Applicative Aspects of Computer Science (ICTAACS)\",\"volume\":\"120 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2019-12-01\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"9\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2019 International Conference on Theoretical and Applicative Aspects of Computer Science (ICTAACS)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ICTAACS48474.2019.8988138\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2019 International Conference on Theoretical and Applicative Aspects of Computer Science (ICTAACS)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICTAACS48474.2019.8988138","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
Intrusion detection system for SDN network using deep learning approach
Software Defined Network (SDN) is considered as the main component of the next generation network. Security, in this environment, has very challenges and risks. Attacking SDN controller or injecting false flow rules could affect the network and block the entire services. To enhance the SDN network security, we propose an anomaly-based intrusion detection system using deep learning approach. This solution aims to protect the communication channel between the SDN control layer and the SDN infrastructure layer against false data injection attack, and to detect any attempt of attack in SND southbound side. We analyze the flows that circulate in the SDN network, we use the logarithm function followed by the Min/Max scalar technique to normalize the flows features. For the flow classification, we exploit the Relu and Softmax functions. We test the proposed system with CICIDS2017 dataset on an experimental platform combining Mininet environment and ONOS controller. The evaluation results demonstrate the effectiveness and efficiency of the proposed security solution.