DocumentCode
3735293
Title
An adaptive network intrusion detection approach for the cloud environment
Author
Hui-Hao Chou;Sheng-De Wang
Author_Institution
Department of Electrical Engineering, National Taiwan University
fYear
2015
Firstpage
1
Lastpage
6
Abstract
As Internet attacks grow rapidly, firewalls or network intrusion systems are indispensable. Existing approaches usually use attack signatures, machine learning or data mining algorithms to detect and stop anomaly or malicious flow. Machine learning algorithms need a set of labeled data to train the detection model, while the labeled data set is not always available. In this paper, we proposed an anomaly detection approach that is adaptive to the ever-changing network environment. The approach constructs a decision tree-based detection model for intrusion detection from unlabeled data by using an unsupervised learning algorithm called spectral clustering. And the system can easily be deployed on the cloud environment. In the experiments with the DARPA 2000 data set and the KDD Cup 1999 data set, our system shows notable improvement on the detection performance after the adaptation procedure.
Keywords
"Clustering algorithms","Detectors","Cloud computing","Decision trees","Data models","Algorithm design and analysis","Adaptation models"
Publisher
ieee
Conference_Titel
Security Technology (ICCST), 2015 International Carnahan Conference on
Print_ISBN
978-1-4799-8690-3
Electronic_ISBN
2153-0742
Type
conf
DOI
10.1109/CCST.2015.7389649
Filename
7389649
Link To Document