Watching Smartly from the Bottom: Intrusion Detection revamped through Programmable Networks and Artificial Intelligence

The advent of Programmable Data Planes represents an outstanding evolution and complete revolution of the Software- Defined Networking paradigm. The capacity to define the entire behavior of forwarding devices by controlling the packet parsing procedures and executing custom operations enables offloading functionalities traditionally performed at the control plane. A recent research line has explored the possibility of even offloading to the data plane part of Artificial Intelligence algorithms, and more specifically, Machine Learning ones, to increase their accuracy and responsiveness (by having more detailed visibility of the traffic). This introduces a significant opportunity for evolution in the critical field of Intrusion Detection. However, offloading functionalities to the data plane is not a straightforward task. In this paper, we discuss how Programmable Data Planes might complement different stages of an Intrusion Detection System based on Machine Learning. We present two use cases that make evident the feasibility of this approach and highlight aspects that must be considered when addressing the challenge of deploying solutions leveraging data-plane functionalities.

READ FULL TEXT
research
07/12/2023

Introducing Packet-Level Analysis in Programmable Data Planes to Advance Network Intrusion Detection

Programmable data planes offer precise control over the low-level proces...
research
04/05/2022

Sufficient Reasons for A Zero-Day Intrusion Detection Artificial Immune System

The Internet is the most complex machine humankind has ever built, and h...
research
07/10/2017

A Machine Learning Based Intrusion Detection System for Software Defined 5G Network

As an inevitable trend of future 5G networks, Software Defined architect...
research
07/24/2020

A Comparative Study of AI-based Intrusion Detection Techniques in Critical Infrastructures

Volunteer computing uses Internet-connected devices (laptops, PCs, smart...
research
03/05/2018

Programmable Switch as a Parallel Computing Device

Modern switches have packet processing capacity of up to multi-tera bits...
research
06/11/2018

An Efficient Flow-based Multi-level Hybrid Intrusion Detection System for Software-Defined Networks

Software-Defined Networking (SDN) is a novel networking paradigm that pr...
research
02/01/2021

An Exhaustive Survey on P4 Programmable Data Plane Switches: Taxonomy, Applications, Challenges, and Future Trends

Traditionally, the data plane has been designed with fixed functions to ...

Please sign up or login with your details

Forgot password? Click here to reset