Snort-based smart and swift intrusion detection system
In this paper, a smart Intrusion Detection System (IDS) has been proposed that detects network attacks in less time after monitoring incoming traffic thus maintaining better performance. Methods/Statistical Analysis: The features are extracted using back-propagation algorithm. Then, only these relev...
Main Authors: | , , , , |
---|---|
Format: | Article |
Language: | English |
Published: |
Informatics (India) Limited
2018
|
Subjects: | |
Online Access: | http://irep.iium.edu.my/62513/ http://irep.iium.edu.my/62513/ http://irep.iium.edu.my/62513/ http://irep.iium.edu.my/62513/2/Snort-Based%20Smart%20and%20Swift%20Intrusion%20Detection.pdf |
Summary: | In this paper, a smart Intrusion Detection System (IDS) has been proposed that detects network attacks in less time after monitoring incoming traffic thus maintaining better performance. Methods/Statistical Analysis: The features are extracted using back-propagation algorithm. Then, only these relevant features are trained with the help of multi-layer perceptron supervised neural network. The simulation is performed using MATLAB. Findings: The proposed system has been verified to have high accuracy rate, high sensitivity as well as a reduction in false positive rate. Besides, the intrusions have been classified into four categories as Denial-of-Service (DoS), User-to-root (U2R), Remote-to-Local (R2L) and Probe attacks; and the alerts are stored and shared via a central log. Thus, the unknown attacks detected by other Intrusion Detection Systems can be sensed by any IDS in the network thereby reducing computational cost as well as enhancing the overall detection rate. Applications/Improvements: The proposed system does not waste time by considering and analysing all the features but takes into consideration only relevant ones for the specific attack and supervised |
---|