2019
DOI: 10.1093/jigpal/jzz060
|View full text |Cite
|
Sign up to set email alerts
|

Deep packet inspection for intelligent intrusion detection in software-defined industrial networks: A proof of concept

Abstract: Specifically tailored industrial control systems (ICSs) attacks are becoming increasingly sophisticated, accentuating the need of ICS cyber security. The nature of these systems makes traditional IT security measures not suitable, requiring expressly developed security countermeasures. Within the past decades, research has been focused in network-based intrusion detection systems. With the appearance of software-defined networks (SDNs), new opportunities and challenges have shown up in the research community. … Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1
1

Citation Types

0
2
0

Year Published

2020
2020
2024
2024

Publication Types

Select...
6
1

Relationship

0
7

Authors

Journals

citations
Cited by 10 publications
(2 citation statements)
references
References 18 publications
0
2
0
Order By: Relevance
“…DPI techniques are widely used in IDS applications created to ensure network security in SDN. In addition to the studies that present the systems created by applying DPI engines that perform signature detection on SDN controllers [181][182][183], there are also some studies supported by an anomaly-based IDS to determine unknown or zero-day attacks such as the studies numbered [13] and [184]. In the study numbered [13], which points to the use of the DPI technique as a security solution for smart grids, a SDN-based security monitoring framework by using a hybrid model of the DL approach and DPI technique is presented.…”
Section: Sdn Security With Dpimentioning
confidence: 99%
“…DPI techniques are widely used in IDS applications created to ensure network security in SDN. In addition to the studies that present the systems created by applying DPI engines that perform signature detection on SDN controllers [181][182][183], there are also some studies supported by an anomaly-based IDS to determine unknown or zero-day attacks such as the studies numbered [13] and [184]. In the study numbered [13], which points to the use of the DPI technique as a security solution for smart grids, a SDN-based security monitoring framework by using a hybrid model of the DL approach and DPI technique is presented.…”
Section: Sdn Security With Dpimentioning
confidence: 99%
“…Te traditional port-based approaches are no longer reliable in increasingly complex network environments. Te approaches based on deep packet inspection technology [2,3] are not suitable for encrypted trafc. Te approaches based on traditional machine learning learn specifed features from a large amount of training data, which can achieve highprecision classifcation.…”
Section: Introductionmentioning
confidence: 99%