首页> 外文会议>IEEE Canadian Conference on Electrical and Computer Engineering >INSECS-DCS: A Highly Customizable Network Intrusion Dataset Creation Framework
【24h】

INSECS-DCS: A Highly Customizable Network Intrusion Dataset Creation Framework

机译:INSECS-DCS:高度可定制的网络入侵数据集创建框架

获取原文

摘要

One critical challenge in design and operation of network intrusion detection systems (IDS) is the limited datasets used for IDS training and its impact on the system performance. If the training dataset is not updated or lacks necessary attributes, it will affect the performance of the IDS. To overcome this challenge, we propose a highly customizable software framework capable of generating labeled network intrusion datasets on demand. In addition to the capability to customize attributes, it accepts two modes of data input and output. One input method is to collect real-time data by running the software at a chosen network node and the other is to get Raw PCAP files from another data provider. The output can be either Raw PCAP with selected attributes per packet or a processed dataset with customized attributes related to both individual packet features and overall traffic behavior within a time window. The abilities of this software are compared with a product which has similar intentions and notable novelties and capabilities of the proposed system have been noted.
机译:网络入侵检测系统(IDS)的设计和操作中的一个关键挑战是用于IDS培训的有限数据集及其对系统性能的影响。如果未更新训练数据集或缺少必要属性,则会影响ID的性能。为了克服这一挑战,我们提出了一种高度可定制的软件框架,能够根据需要生成标记的网络入侵数据集。除了要自定义属性的功能外,它还接受两种数据输入和输出。一种输入方法是通过在所选网络节点处运行软件来收集实时数据,另一个是从另一个数据提供商获取原始的PCAP文件。输出可以是原始PCAP,每个数据包的选定属性或已处理的数据集,其中包含与时间窗口中的各个数据包功能和整体流行相关的自定义属性。该软件的能力与具有相似意图和显着的新奇饼的产品进行了比较,并且已经注意到所提出的系统的能力。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号