Visible to the public Design and Implementation Adaptive Intrusion Prevention System (IPS) for Attack Prevention in Software-Defined Network (SDN) Architecture

TitleDesign and Implementation Adaptive Intrusion Prevention System (IPS) for Attack Prevention in Software-Defined Network (SDN) Architecture
Publication TypeConference Paper
Year of Publication2018
AuthorsPratama, R. F., Suwastika, N. A., Nugroho, M. A.
Conference Name2018 6th International Conference on Information and Communication Technology (ICoICT)
Date PublishedMay 2018
PublisherIEEE
ISBN Number978-1-5386-4572-7
KeywordsAdaptive Intrusion Prevention System, adaptive IPS, Adaptive systems, attack prevention, attacker host, Computer architecture, computer network security, Fuzzy logic, fuzzy set theory, host attacks, intrusion prevention system, IP networks, IPS, logic architecture, logic network, malicious packet, Metrics, pubcrawl, resilience, Resiliency, SDN network, security, Servers, Software, software defined networking, software-defined network
Abstract

Intrusion Prevention System (IPS) is a tool for securing networks from any malicious packet that could be sent from specific host. IPS can be installed on SDN network that has centralized logic architecture, so that IPS doesnt need to be installed on lots of nodes instead it has to be installed alongside the controller as center of logic network. IPS still has a flaw and that is the block duration would remain the same no matter how often a specific host attacks. For this reason, writer would like to make a system that not only integrates IPS on the SDN, but also designs an adaptive IPS by utilizing a fuzzy logic that can decide how long blocks are based on the frequency variable and type of attacks. From the results of tests that have been done, SDN network that has been equipped with adaptive IPS has the ability to detect attacks and can block the attacker host with the duration based on the frequency and type of attacks. The final result obtained is to make the SDN network safer by adding 0.228 milliseconds as the execute time required for the fuzzy algorithm in one process.

URLhttps://ieeexplore.ieee.org/document/8528735
DOI10.1109/ICoICT.2018.8528735
Citation Keypratama_design_2018