A rule learning approach for building an expert system to detect network intrusions

المؤلفون المشاركون

Jalal, Umar
Nasr, Ahmad
Rizq Allah, Lidya Wahid

المصدر

International Journal of Intelligent Computing and Information Sciences

العدد

المجلد 23، العدد 1 (31 مارس/آذار 2023)، ص ص. 106-114، 9ص.

الناشر

جامعة عين شمس كلية الحاسبات و المعلومات

تاريخ النشر

2023-03-31

دولة النشر

مصر

عدد الصفحات

9

التخصصات الرئيسية

تكنولوجيا المعلومات وعلم الحاسوب

الموضوعات

الملخص EN

Network intrusion detection is the problem of detecting suspicious requests through networks.

in recent years, many researchers focus on addressing this problem in the context of machine learning.

although machine learning algorithms are powerful, most of them lack the power of interpretability.

expert systems, on the other hand, are knowledge-based systems designed to simulate the problem-solving behavior of human experts.

expert systems possess the advantage of interpretability through an explanation mechanism that justifies their line of reasoning, however, they need the availability of a domain expert.

this paper proposes the use of rule learning approaches to gain the best of both fields, being interpretable as the expert system and learnable through collected datasets without the need for explicit expertise.

a separate and conquer rule learning approach is proposed for network intrusion detection.

our results show that the separate and conquer approach achieves a 0.99 weighted average f1-score on the test set which makes it very comparative to both decision trees and classical machine learning approaches.

we also show that rules produced using separate and conquer are much simpler than decision trees and more interpretable.

نمط استشهاد جمعية علماء النفس الأمريكية (APA)

Jalal, Umar& Nasr, Ahmad& Rizq Allah, Lidya Wahid. 2023. A rule learning approach for building an expert system to detect network intrusions. International Journal of Intelligent Computing and Information Sciences،Vol. 23, no. 1, pp.106-114.
https://search.emarefa.net/detail/BIM-1460755

نمط استشهاد الجمعية الأمريكية للغات الحديثة (MLA)

Jalal, Umar…[et al.]. A rule learning approach for building an expert system to detect network intrusions. International Journal of Intelligent Computing and Information Sciences Vol. 23, no. 1 (Mar. 2023), pp.106-114.
https://search.emarefa.net/detail/BIM-1460755

نمط استشهاد الجمعية الطبية الأمريكية (AMA)

Jalal, Umar& Nasr, Ahmad& Rizq Allah, Lidya Wahid. A rule learning approach for building an expert system to detect network intrusions. International Journal of Intelligent Computing and Information Sciences. 2023. Vol. 23, no. 1, pp.106-114.
https://search.emarefa.net/detail/BIM-1460755

نوع البيانات

مقالات

لغة النص

الإنجليزية

الملاحظات

Includes bibliographical references : p. 113-114

رقم السجل

BIM-1460755