scholarly journals A Neuro Fuzzy Based Intrusion Detection System for a Cloud Data Center Using Adaptive Learning

2015 ◽  
Vol 15 (3) ◽  
pp. 88-103 ◽  
Author(s):  
Pandeeswari Nagarajan ◽  
Ganeshkumar Perumal

Abstract With its continuous improvements, the cloud computing system leaves an open door for malicious activities. This promotes the significance of constructing a malware action detection component to discover the anomalies in the virtual environment. Besides, the traditional intrusion detection system does not suit for the cloud environment. So, the proposed scheme develops an anomaly detection system, named Hypervisor Detector at a hypervisor layer to detect the abnormalities in the virtual network. Besides, the fuzzy systems have the ability to detect the presence of uncertain and imprecise nature of anomalies; they are not able to construct models based on target data. One of the successful approaches, which integrate fuzzy systems with adaptation and learning proficiencies of a neural network, such as ANFIS (Adaptive Neuro Fuzzy Inference System) model, is based on target values. The Hypervisor Detector is designed and developed with an ANFIS and practised with a hybrid algorithm, a combination of the back propagation gradient descent technique with the least square method. For the experiments and performance analysis, DARPA’s KDD cup data set is used. The performance analysis and results show that the model proposed is well designed to detect the abnormalities in virtual environment with the minimum false alarm rate and reduced overhead.

Intrusion Detection System (IDS) is the nearly all imperative constituent of computer network security. IDSs are designed to comprehend intrusion attempts in incoming network traffic shrewdly. It deals with big volume of data containing immaterial and outmoded features, which lead to delay in training as well as testing procedures. Therefore, to minimize the false alarm and computation complexity, the features selection technique for intrusion detection has been implemented. In this paper PCA (Principal Component Analysis) and Fuzzy Inference System (FIS) have been used on kdd99 dataset to develop FC-NIDS model. PCA is used to select the attacked features to minimize the computational work, while FIS is used to develop a fuzzy inference system for accuracy in prophecy using MATLAB. The results of the experiment are tested on UCI data sets as a standard bench-mark. It has been found efficient for true prediction of intrusion as well as to reduce the false alarm rate. The proposed fuzzy logic controller IDS (FC-NIDS), is passable to covenant with signature and anomaly based attacks to get enhanced intrusion detection, decreases false alarm and to optimize complexity.


Sign in / Sign up

Export Citation Format

Share Document