arrow
Return

Predicting Attack Pattern via Machine Learning by Exploiting Stateful Firewall as Virtual Network Function in an SDN Network

delete2022-01-18
delete32
delete
OA
AI
S
Senthil Prabakaran
R
Ramar, Ramalakshmi
I
Irshad Hussain *
B
Balasubramanian Prabhu Kavin
S
Sultan S. Alshamrani
A
Ahmed Saeed AlGhamdi
A
Abdullah Alshehri
DOI:10.3390/s22030709delete
deleteOriginal
deleteShare
deleteSave
View PDF
Abstract

Abstract

En 中文
Decoupled data and control planes in Software Defined Networks (SDN) allow them to handle an increasing number of threats by limiting harmful network links at the switching stage. As storage, high-end servers, and network devices, Network Function Virtualization (NFV) is designed to replace purpose-built network elements with VNFs (Virtualized Network Functions). A Software Defined Network Function Virtualization (SDNFV) network is designed in this paper to boost network performance. Stateful firewall services are deployed as VNFs in the SDN network in this article to offer security and boost network scalability. The SDN controller's role is to develop a set of guidelines and rules to avoid hazardous network connectivity. Intruder assaults that employ numerous socket addresses cannot be adequately protected by these strategies. Machine learning algorithms are trained using traditional network threat intelligence data to identify potentially malicious linkages and probable attack targets. Based on conventional network data (DT), Bayesian Network (BayesNet), Naive-Bayes, C4.5, and Decision Table (DT) algorithms are used to predict the target host that will be attacked. The experimental results shows that the Bayesian Network algorithm achieved an average prediction accuracy of 92.87%, Native-Bayes Algorithm achieved an average prediction accuracy of 87.81%, C4.5 Algorithm achieved an average prediction accuracy of 84.92%, and the Decision Tree algorithm achieved an average prediction accuracy of 83.18%. There were 451 k login attempts from 178 different countries, with over 70 k source IP addresses and 40 k source port addresses recorded in a large dataset from nine honeypot servers.
Keywords:
software defined network
network function virtualization
firewall
SDNFV
attack prediction
machine learning
decision table
bayesian network
AI Summary

AI Summary

Key information extracted from the uploaded paper, including a brief overview, abstract, background, key highlights, visual analysis, and future outlook.

Journal

Sensors cover
Sensors
IF:
3.5
Papers:
7.1W
Citations:
20.9W

Organization

A
al baha university
Scholars:
931
Papers: 1.0K
Citations: 12
U
University of Engineering and Technology Peshawar
Scholars:
839
Papers: 709
Citations: 1.3K
K
kalasalingam academy of research & education
Scholars:
1.4K
Papers: 1.2K
Citations: 3
K
Karpagam College of Engineering
Scholars:
220
Papers: 222
Citations: 0
T
Taif University
Scholars:
5.9K
Papers: 7.0K
Citations: 7.5K
researcher View more organizations