Towards implementing fast and scalable Network Intrusion Detection System using Entropy based Discretization Technique
Title | Towards implementing fast and scalable Network Intrusion Detection System using Entropy based Discretization Technique |
Publication Type | Conference Paper |
Year of Publication | 2020 |
Authors | Ratti, R., Singh, S. R., Nandi, S. |
Conference Name | 2020 11th International Conference on Computing, Communication and Networking Technologies (ICCCNT) |
Date Published | July 2020 |
Publisher | IEEE |
ISBN Number | 978-1-7281-6851-7 |
Keywords | anomaly based IDS, computer network security, discretization, Entropy, entropy based discretization technique, feature extraction, Hidden Markov models, IDS systems, Intrusion detection, intrusion detection system, machine learning, network attack, network intrusion detection system, network packets, Network reconnaissance, networking technologies, principal component analysis, pubcrawl, Reconnaissance, resilience, Resiliency, Scalability, Training, Training data |
Abstract | With the advent of networking technologies and increasing network attacks, Intrusion Detection systems are apparently needed to stop attacks and malicious activities. Various frameworks and techniques have been developed to solve the problem of intrusion detection, still there is need for new frameworks as per the challenging scenario of enormous scale in data size and nature of attacks. Current IDS systems pose challenges on the throughput to work with high speed networks. In this paper we address the issue of high computational overhead of anomaly based IDS and propose the solution using discretization as a data preprocessing step which can drastically reduce the computation overhead. We propose method to provide near real time detection of attacks using only basic flow level features that can easily be extracted from network packets. |
URL | https://ieeexplore.ieee.org/document/9225476 |
DOI | 10.1109/ICCCNT49239.2020.9225476 |
Citation Key | ratti_towards_2020 |
- network intrusion detection system
- Training data
- Training
- Scalability
- Resiliency
- resilience
- Reconnaissance
- pubcrawl
- principal component analysis
- networking technologies
- Network reconnaissance
- network packets
- anomaly based IDS
- network attack
- machine learning
- intrusion detection system
- Intrusion Detection
- IDS systems
- Hidden Markov models
- feature extraction
- entropy based discretization technique
- Entropy
- discretization
- computer network security