Machine Learning Approach on Multiclass Classification of Internet Firewall Log Files

06/12/2023
by   Md. Habibur Rahman, et al.
0

Firewalls are critical components in securing communication networks by screening all incoming (and occasionally exiting) data packets. Filtering is carried out by comparing incoming data packets to a set of rules designed to prevent malicious code from entering the network. To regulate the flow of data packets entering and leaving a network, an Internet firewall keeps a track of all activity. While the primary function of log files is to aid in troubleshooting and diagnostics, the information they contain is also very relevant to system audits and forensics. Firewalls primary function is to prevent malicious data packets from being sent. In order to better defend against cyberattacks and understand when and how malicious actions are influencing the internet, it is necessary to examine log files. As a result, the firewall decides whether to 'allow,' 'deny,' 'drop,' or 'reset-both' the incoming and outgoing packets. In this research, we apply various categorization algorithms to make sense of data logged by a firewall device. Harmonic mean F1 score, recall, and sensitivity measurement data with a 99 accuracy score in the random forest technique are used to compare the classifier's performance. To be sure, the proposed characteristics did significantly contribute to enhancing the firewall classification rate, as seen by the high accuracy rates generated by the other methods.

READ FULL TEXT
research
05/07/2018

Detecting Compressed Cleartext Traffic from Consumer Internet of Things Devices

Data encryption is the primary method of protecting the privacy of consu...
research
05/17/2022

Susceptibility of Age of Gossip to Timestomping

We consider a fully connected network consisting of a source that mainta...
research
02/10/2020

SparseIDS: Learning Packet Sampling with Reinforcement Learning

Recurrent Neural Networks (RNNs) have been shown to be valuable for cons...
research
07/15/2020

Static analysis of executable files by machine learning methods

The paper describes how to detect malicious executable files based on st...
research
08/30/2023

Predict And Prevent DDOS Attacks Using Machine Learning and Statistical Algorithms

A malicious attempt to exhaust a victim's resources to cause it to crash...
research
08/25/2020

Grant-Free Access: Machine Learning for Detection of Short Packets

In this paper, we explore the use of machine learning methods as an effi...
research
09/19/2020

On Multi-Session Website Fingerprinting over TLS Handshake

Analyzing users' Internet traffic data and activities has a certain impa...

Please sign up or login with your details

Forgot password? Click here to reset