NetNN: Neural Intrusion Detection System in Programmable Networks

التفاصيل البيبلوغرافية
العنوان: NetNN: Neural Intrusion Detection System in Programmable Networks
المؤلفون: Razavi, Kamran, Fard, Shayan Davari, Karlos, George, Nigade, Vinod, Mühlhäuser, Max, Wang, Lin
سنة النشر: 2024
المجموعة: Computer Science
مصطلحات موضوعية: Computer Science - Cryptography and Security, Computer Science - Distributed, Parallel, and Cluster Computing
الوصف: The rise of deep learning has led to various successful attempts to apply deep neural networks (DNNs) for important networking tasks such as intrusion detection. Yet, running DNNs in the network control plane, as typically done in existing proposals, suffers from high latency that impedes the practicality of such approaches. This paper introduces NetNN, a novel DNN-based intrusion detection system that runs completely in the network data plane to achieve low latency. NetNN adopts raw packet information as input, avoiding complicated feature engineering. NetNN mimics the DNN dataflow execution by mapping DNN parts to a network of programmable switches, executing partial DNN computations on individual switches, and generating packets carrying intermediate execution results between these switches. We implement NetNN in P4 and demonstrate the feasibility of such an approach. Experimental results show that NetNN can improve the intrusion detection accuracy to 99\% while meeting the real-time requirement.
نوع الوثيقة: Working Paper
URL الوصول: http://arxiv.org/abs/2406.19990
رقم الأكسشن: edsarx.2406.19990
قاعدة البيانات: arXiv