Decision Tree for Multiclass Classification of Firewall Access

10Citations
Citations of this article
49Readers
Mendeley users who have this article in their library.

Abstract

Internet usage is increasing rapidly worldwide, allowing numerous connected computer objects or devices to run and communicate with mass digital information. As Internet usage becomes pervasive, attacks against them are also rising aiming to penetrate the target network and remain undiscovered. Therefore, analyzing the behavior of Internet traffic manually is not possible due to its complexity and the large number of user activity. Incoming and outgoing Internet traffic are controlled using a firewall through an automated Internet security system using a predefined set of rules. Machine learning algorithms are used for Repeated Stemanalysis of the activities on firewall devices and to control traffic on the basis of the results. However, the output models (i.e., classification models) lack explanatory power insight into the relative influence of the main factors in the classification and thus have low accuracy. In this study, a decision tree classification algorithm with a tree-structured model is used for firewall activity analysis, which produces high classification accuracy. Empirical results on firewall access with different actions were compared against six benchmark classification algorithms, namely, SVM, OneR, ANN, Multi class classifier, PSO and ZeroR, in five popular evaluation metrics. The experimental results show that the performance of the proposed classifier in all evaluation metrics is higher than the state-of-the-art classification algorithms, such as SVM, ANN, Multi class classifier, PSO, and the most related classification algorithms that provide comprehensible models (i.e., OneR and ZeroR). The proposed classifier offers interpretation ability by presenting the classification model into a tree representation, which is a further advantage.

References Powered by Scopus

Top 10 algorithms in data mining

4437Citations
N/AReaders
Get full text

Improved use of continuous attributes in C4.5

1471Citations
N/AReaders
Get full text

An up-to-date comparison of state-of-the-art classification algorithms

345Citations
N/AReaders
Get full text

Cited by Powered by Scopus

Classification of Firewall Log Data Using Multiclass Machine Learning Models

24Citations
N/AReaders
Get full text

Multi-class random forest model to classify wastewater treatment imbalanced data

3Citations
N/AReaders
Get full text

A Survey on Firewall for cloud security with Anomaly detection in Firewall Policy

3Citations
N/AReaders
Get full text

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Cite

CITATION STYLE

APA

AL-Behadili, H. N. K. (2021). Decision Tree for Multiclass Classification of Firewall Access. International Journal of Intelligent Engineering and Systems, 14(3), 294–302. https://doi.org/10.22266/ijies2021.0630.25

Readers' Seniority

Tooltip

PhD / Post grad / Masters / Doc 11

58%

Lecturer / Post doc 8

42%

Readers' Discipline

Tooltip

Computer Science 21

88%

Engineering 2

8%

Decision Sciences 1

4%

Save time finding and organizing research with Mendeley

Sign up for free