Title
Insecs-Dcs: A Highly Customizable Network Intrusion Dataset Creation Framework
Abstract
One critical challenge in design and operation of network intrusion detection systems (IDS) is the limited datasets used for IDS training and its impact on the system performance. If the training dataset is not updated or lacks necessary attributes, it will affect the performance of the IDS. To overcome this challenge, we propose a highly customizable software framework capable of generating labeled network intrusion datasets on demand. In addition to the capability to customize attributes, it accepts two modes of data input and output. One input method is to collect real-time data by running the software at a chosen network node and the other is to get Raw PCAP files from another data provider. The output can be either Raw PCAP with selected attributes per packet or a processed dataset with customized attributes related to both individual packet features and overall traffic behavior within a time window. The abilities of this software are compared with a product which has similar intentions and notable novelties and capabilities of the proposed system have been noted.
Year
DOI
Venue
2018
10.1109/ccece.2018.8447661
2018 IEEE CANADIAN CONFERENCE ON ELECTRICAL & COMPUTER ENGINEERING (CCECE)
Field
DocType
ISSN
Microsoft Windows,Computer science,Input method,Network packet,Node (networking),Input/output,Real-time computing,Control engineering,Software,Intrusion detection system,Software framework
Conference
0840-7789
Citations 
PageRank 
References 
0
0.34
0
Authors
3
Name
Order
Citations
PageRank
Nadun Rajasinghe100.34
Jagath Samarabandu213320.50
Xianbin Wang32365223.86