Design of a Novel Network Framework for Traffic Identification by Using Deep Packet Inspection and Machine Learning
-
Published:2022-10-01
Issue:
Volume:
Page:279-290
-
ISSN:2395-602X
-
Container-title:International Journal of Scientific Research in Science and Technology
-
language:en
-
Short-container-title:IJSRST
Author:
Nikita Manne 1, G Vinoda Reddy 2, M. Sreenu Naik 3, Kondabathula Durga Charan 4
Affiliation:
1. Assistant Professor, CSIT Department, CVR college of Engineering, Hyderabad, India 2. Professor, CSE (AI & ML) Department, CMR Technical Campus, Hyderabad, India 3. Assistant Professor, CSE (AI & ML) Department, CMR Technical Campus, Hyderabad, India 4. Assistant Professor, CSE (AI&DS) Department, Madanapalle Institute of Technology & Science, Andhra Pradesh, India
Abstract
This paper presents an investigation, involving experiments, which shows that current network intrusion, detection, and prevention systems (NIDPSs) have several shortcomings in detecting or preventing rising unwanted traffic and have several threats in high-speed environments. Precise organization traffic recognizable proof is a significant reason for network traffic checking and information investigation, and is the way to work on the nature of client administration. In this paper, through the examination of two organization traffic ID strategies in light of machine learning and profound parcel review, an organization traffic distinguishing proof strategy in view of machine learning and profound bundle examination is proposed. This strategy utilizes profound parcel assessment innovation to distinguish most organization traffic, diminishes the responsibility that should be recognized by machine learning. This paper presents an investigation, involving experiments, which shows that current network intrusion, detection, and prevention systems (NIDPSs) have several shortcomings in detecting or preventing rising unwanted traffic and have several threats in high-speed environments. It shows that the NIDPS performance can be weak in the face of high-speed and high-load malicious traffic in terms of packet drops, outstanding packets without analysis, and failing to detect/prevent unwanted traffic. A novel quality of service (QoS) architecture has been designed to increase the intrusion detection and prevention performance. Our exploration has proposed and assessed an answer involving an original QoS setup in a multi-facet change to sort out parcels/traffic and equal procedures to build the bundle handling speed. The new engineering was tried under various traffic velocities, types, and errands. The trial results show that the design works on the organization and security execution which is can conceal to 8 Gb/s with 0 bundles dropped. This paper likewise shows that this number (8Gb/s) can be improved, yet it relies upon the framework limit which is constantly restricted.
Publisher
Technoscience Academy
Reference26 articles.
1. M. D. Samani, M. Karamta, J. Bhatia, and M. B. Potdar, ``Intrusion detection system for DoS attack in cloud,'' International Journal of Applied Information Systems (Foundation of Computer Science), vol. 10, no. 5. New York, NY, USA: FCS, 2016. 2. W. Bul'ajoul, A. James, and M. Pannu, ``Improving network intrusion detection system performance through quality-of-service configuration and parallel technology,'' J. Comput. Syst. Sci., vol. 81, no. 6, pp. 981999, 2015. 3. Anne James, "A New Architecture for Network Intrusion Detection and Prevention", VOLUME 7, 2019,IEEE Access. 4. Ravindra Changala, “Intrusion Detection System Using Genetic Algorithm” published in International Journal of Emerging Trends in Engineering and Development [IJETED], Impact Factor 2.87, ISSN NO:2249-6149, Issue 2,Vol. 4 May 2012. 5. W. Bul'ajoul, A. James, S. Shaikh, and M. Pannu, ``Using Cisco network components to improve NIDPS performance,'' Comput. Sci. Inf. Technol.,pp. 137-157, Aug. 2016.
|
|