FlowAgent: Software Defined Firewall Rule Generator for Network Intrusion Detection System

Nithya Muthukumaran, Jayakumar Chinnappan · International journal of intelligent engineering and systems · 2017

Networking suffers from various security vulnerabilities in the present paradigm due to the technical difficulties like static architectural design, provider-dependent and it is economically costly.To overcome these challenges a novel paradigm concept is introduced based on dynamic control in the network as Software Defined Firewall.Software Defined Network is an emerging reprogrammable technology which helps the administrator to control the overall network, on the other hand Firewall act as a single point perimeter to protect the network from network attacks.Combination of different paradigms led to reshaping of future.Software Defined Firewall is a new network platform to manage the networks by segregating the control plane from the data plane.This separation provides a programmatic control over the network traffic by writing rules, which act as a network attack defence.Hereby the firewall policy rules are written by analysing the traffic and packet log are mined using Association rule mining techniques.Analysis of these policy rules costs for generation of efficient rule set and multiple minimum support with probability will minimize the number of rule set which will result in effective network policy management.Software Defined Firewall provides a better solution to reduce ratio of attack traffic.

Read the paper · More papers on PaperTik