Network intrusion detection based on machine learning strategies: performance comparisons on imbalanced wired, wireless, and software-defined networking (SDN) network traffics
Özet
The rapid growth of computer networks emphasizes the urgency of addressing security issues. Organizations rely on network intrusion detection systems (NIDSs) to protect sensitive data from unauthorized access and theft. These systems analyze network traffic to detect suspicious activities, such as attempted breaches or cyberattacks. However, existing studies lack a thorough assessment of class imbalances and classification performance for different types of network intrusions: wired, wireless, and software-defined networking (SDN). This research aims to fill this gap by examining these networks’ imbalances, feature selection, and binary classification to enhance intrusion detection system efficiency. Various techniques such as SMOTE, ROS, ADASYN, and SMOTETomek are used to handle imbalanced datasets. Additionally, eXtreme Gradient Boosting (XGBoost) identifies key features, and an autoencoder (AE) assists in feature extraction for the classification task. The study evaluates datasets such as AWID, UNSW, and InSDN, yielding the best results with different numbers of selected features. Bayesian optimization fine-tunes parameters, and diverse machine learning algorithms (SVM, kNN, XGBoost, random forest, ensemble classifiers, and autoencoders) are employed. The optimal results, considering F1-measure, overall accuracy, detection rate, and false alarm rate, have been achieved for the UNSW-NB15, preprocessed AWID, and InSDN datasets, with values of [0.9356, 0.9289, 0.9328, 0.07597], [0.997, 0.9995, 0.9999, 0.0171], and [0.9998, 0.9996, 0.9998, 0.0012], respectively. These findings demonstrate that combining Bayesian optimization with oversampling techniques significantly enhances classification performance across wired, wireless, and SDN networks when compared to previous research conducted on these datasets.
Kaynak
Turkish Journal of Electrical Engineering and Computer SciencesCilt
32Sayı
4Koleksiyonlar
İlgili Öğeler
Başlık, yazar, küratör ve konuya göre gösterilen ilgili öğeler.
-
Collecting smart meter data via public transportation buses
Bilgin, Bilal Erman; Baktir, Selcuk; Gungor, Vehbi Cagri (WILEY111 RIVER ST, HOBOKEN 07030-5774, NJ, 2016)With advances in technology, wireless sensor networks (WSNs) have found new applications and their popularity has increased dramatically. In several applications, WSNs have the potential to replace wired data communication ... -
p-hub median problem for non-complete networks
Akgun, Ibrahim; Tansel, Barbaros C. (PERGAMON-ELSEVIER SCIENCE LTD, THE BOULEVARD, LANGFORD LANE, KIDLINGTON, OXFORD OX5 1GB, ENGLAND, 2018)Most hub location studies in the literature use a complete-network structure as an input in developing optimization models. This starting point is not necessarily from assuming that the underlying real-world network (e.g., ... -
The impact of error control schemes on lifetime of energy harvesting wireless sensor networks in industrial environments
Tekin, Nazli; Gungor, Vehbi Cagri (ELSEVIER, RADARWEG 29, 1043 NX AMSTERDAM, NETHERLANDS, 2020)Due to the harsh channel conditions of the industrial environments, the data transmission over the wireless channel suffers from erroneous packets. The energy consumption of error control schemes is of great importance for ...