IQR-based approach for DDoS detection and mitigation in SDN

被引:6
|
作者
Swami, Rochak [1 ]
Dave, Mayank [1 ]
Ranga, Virender [2 ]
机构
[1] Natl Inst Technol, Dept Comp Engn, Kurukshetra, India
[2] Delhi Technol Univ, Dept Informat Technol, Delhi, India
来源
DEFENCE TECHNOLOGY | 2023年 / 25卷
关键词
SDN; DdoS; IQR; Controller; CPU utilization; Packet_in; SOFTWARE-DEFINED NETWORKING; DEFENSE-MECHANISMS; ATTACKS; DOS;
D O I
10.1016/j.dt.2022.10.006
中图分类号
T [工业技术];
学科分类号
08 ;
摘要
Software-defined networking (SDN) is a trending networking paradigm that focuses on decoupling of the control logic from the data plane. This decoupling brings programmability and flexibility for the network management by introducing centralized infrastructure. The complete control logic resides in the controller, and thus it becomes the intellectual and most important entity of the SDN infrastructure. With these advantages, SDN faces several security issues in various SDN layers that may prevent the growth and global adoption of this groundbreaking technology. Control plane exhaustion and switch buffer overflow are examples of such security issues. Distributed denial-of-service (DDoS) attacks are one of the most severe attacks that aim to exhaust the controller's CPU to discontinue the whole functioning of the SDN network. Hence, it is necessary to design a quick as well as accurate detection scheme to detect the attack traffic at an early stage. In this paper, we present a defense solution to detect and mitigate spoofed flooding DDoS attacks. The proposed defense solution is implemented in the SDN controller. The detection method is based on the idea of an statistical measure d Interquartile Range (IQR). For the mitigation purpose, the existing SDN-in-built capabilities are utilized. In this work, the experiments are performed considering the spoofed SYN flooding attack. The proposed solution is evaluated using different performance parameters, i.e., detection time, detection accuracy, packet_in messages, and CPU utilization. The experimental results reveal that the proposed defense solution detects and mitigates the attack effectively in different attack scenarios.& COPY; 2022 China Ordnance Society. Publishing services by Elsevier B.V. on behalf of KeAi Communications Co. Ltd. This is an open access article under the CC BY-NC-ND license (http://creativecommons.org/ licenses/by-nc-nd/4.0/).
引用
收藏
页码:76 / 87
页数:12
相关论文
共 50 条
  • [41] DDoS Detection Based on PCA and Renyi Entropy to Secure SDN
    Kanodia, Krishna
    Kumar, Harsh
    Patel, Sanjeev
    10TH INTERNATIONAL CONFERENCE ON ELECTRONICS, COMPUTING AND COMMUNICATION TECHNOLOGIES, CONECCT 2024, 2024,
  • [42] Enhancing DDoS Attack Detection and Mitigation in SDN Using an Ensemble Online Machine Learning Model
    Alashhab, Abdussalam Ahmed
    Zahid, Mohd Soperi
    Isyaku, Babangida
    Elnour, Asma Abbas
    Nagmeldin, Wamda
    Abdelmaboud, Abdelzahir
    Abdullah, Talal Ali Ahmed
    Maiwada, Umar Danjuma
    IEEE ACCESS, 2024, 12 : 51630 - 51649
  • [43] A low-rate DDoS detection and mitigation for SDN using Renyi Entropy with Packet Drop
    Ahalawat, Anchal
    Babu, Korra Sathya
    Turuk, Ashok Kumar
    Patel, Sanjeev
    JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2022, 68
  • [44] RMCARTAM For DDoS Attack Mitigation in SDN Using Machine Learning
    Revathi M.
    Ramalingam V.V.
    Amutha B.
    Computer Systems Science and Engineering, 2023, 45 (03): : 3023 - 3036
  • [45] JESS: Joint Entropy-Based DDoS Defense Scheme in SDN
    Kalkan, Kubra
    Altay, Levent
    Gur, Gurkan
    Alagoz, Fatih
    IEEE JOURNAL ON SELECTED AREAS IN COMMUNICATIONS, 2018, 36 (10) : 2358 - 2372
  • [46] Mitigation of DDoS Attack Using Moving Target Defense in SDN
    Rochak Swami
    Mayank Dave
    Virender Ranga
    Wireless Personal Communications, 2023, 131 : 2429 - 2443
  • [47] DDoS attack detection and mitigation using deep neural network in SDN environment
    Hnamte, Vanlalruata
    Najar, Ashfaq Ahmad
    Hong, Nhung-Nguyen
    Hussain, Jamal
    Sugali, Manohar Naik
    COMPUTERS & SECURITY, 2024, 138
  • [48] A role-based statistical mechanism for DDoS attack detection in SDN
    Phan The Duy
    Do Thi Thu Hien
    Van-Hau Pham
    PROCEEDINGS OF 2018 5TH NAFOSTED CONFERENCE ON INFORMATION AND COMPUTER SCIENCE (NICS 2018), 2018, : 177 - 182
  • [49] Detection and mitigation of DoS attacks in SDN. An experimental approach
    Galeano-Brajones, Jesus
    Cortes-Polo, David
    Valenzuela-Valdes, Juan F.
    Mora, Antonio M.
    Carmona-Murillo, Javier
    2019 SIXTH INTERNATIONAL CONFERENCE ON INTERNET OF THINGS: SYSTEMS, MANAGEMENT AND SECURITY (IOTSMS), 2019, : 575 - 580
  • [50] The Current Trends of DDoS Detection in SDN Environment
    Kareem, Mohammed Ibrahim
    Jasim, Mandi Nsaif
    PROCEEDING OF 2021 2ND INFORMATION TECHNOLOGY TO ENHANCE E-LEARNING AND OTHER APPLICATION (IT-ELA 2021), 2021, : 29 - 34