A Systematic Literature Review on Machine Learning and Deep Learning Approaches for Detecting DDoS Attacks in Software-Defined Networking

被引:26
作者
Bahashwan, Abdullah Ahmed [1 ]
Anbar, Mohammed [1 ]
Manickam, Selvakumar [1 ]
Al-Amiedy, Taief Alaa [1 ]
Aladaileh, Mohammad Adnan [1 ,2 ]
Hasbullah, Iznan H. H. [1 ]
机构
[1] Univ Sains Malaysia, Natl Adv Ctr IPv6 NAv6, Gelugor 11800, Penang, Malaysia
[2] Amer Univ Madaba AUM, Sch Informat Technol, Cybersecur Dept, Amman 11821, Jordan
关键词
systematic literature review (SLR); software-defined networking (SDN); machine learning (ML); deep learning (DL); distributed denial of service (DDoS); intrusion detection system (IDS); SDN-BASED ARCHITECTURE; FLOODING ATTACKS; FUZZY-LOGIC; DEFENSE; MITIGATION; TAXONOMY; CONTROLLER; ALGORITHM; MECHANISM; FRAMEWORK;
D O I
10.3390/s23094441
中图分类号
O65 [分析化学];
学科分类号
070302 ; 081704 ;
摘要
Software-defined networking (SDN) is a revolutionary innovation in network technology with many desirable features, including flexibility and manageability. Despite those advantages, SDN is vulnerable to distributed denial of service (DDoS), which constitutes a significant threat due to its impact on the SDN network. Despite many security approaches to detect DDoS attacks, it remains an open research challenge. Therefore, this study presents a systematic literature review (SLR) to systematically investigate and critically analyze the existing DDoS attack approaches based on machine learning (ML), deep learning (DL), or hybrid approaches published between 2014 and 2022. We followed a predefined SLR protocol in two stages on eight online databases to comprehensively cover relevant studies. The two stages involve automatic and manual searching, resulting in 70 studies being identified as definitive primary studies. The trend indicates that the number of studies on SDN DDoS attacks has increased dramatically in the last few years. The analysis showed that the existing detection approaches primarily utilize ensemble, hybrid, and single ML-DL. Private synthetic datasets, followed by unrealistic datasets, are the most frequently used to evaluate those approaches. In addition, the review argues that the limited literature studies demand additional focus on resolving the remaining challenges and open issues stated in this SLR.
引用
收藏
页数:48
相关论文
共 132 条
[91]  
Nygren A., 2015, Openflow switch specification version 1.5. 1
[92]   Analysis of Features Dataset for DDoS Detection by using ASVM Method on Software Defined Networking [J].
Oo, Myo Myint ;
Kamolphiwong, Sinchai ;
Kamolphiwong, Thossaporn ;
Vasupongayya, Sangsuree .
INTERNATIONAL JOURNAL OF NETWORKED AND DISTRIBUTED COMPUTING, 2020, 8 (02) :86-93
[93]   Advanced Support Vector Machine- (ASVM-) Based Detection for Distributed Denial of Service (DDoS) Attack on Software Defined Networking (SDN) [J].
Oo, Myo Myint ;
Kamolphiwong, Sinchai ;
Kamolphiwong, Thossaporn ;
Vasupongayya, Sangsuree .
JOURNAL OF COMPUTER NETWORKS AND COMMUNICATIONS, 2019, 2019
[94]  
opendaylight, OPENDAYLIGHT HOM OPE
[95]   Controllers in SDN: A Review Report [J].
Paliwal, Manish ;
Shrimankar, Deepti ;
Tembhurne, Omprakash .
IEEE ACCESS, 2018, 6 :36256-36270
[96]  
Pfaff B., 7047 RFC
[97]  
Phan TV, 2016, 2016 INT IEEE CONFERENCES ON UBIQUITOUS INTELLIGENCE & COMPUTING, ADVANCED & TRUSTED COMPUTING, SCALABLE COMPUTING AND COMMUNICATIONS, CLOUD AND BIG DATA COMPUTING, INTERNET OF PEOPLE, AND SMART WORLD CONGRESS (UIC/ATC/SCALCOM/CBDCOM/IOP/SMARTWORLD), P350, DOI [10.1109/UIC-ATC-ScalCom-CBDCom-IoP-SmartWorld.2016.12, 10.1109/UIC-ATC-ScalCom-CBDCom-IoP-SmartWorld.2016.0069]
[98]   Distributed-SOM: A novel performance bottleneck handler for large-sized software-defined networks under flooding attacks [J].
Phan, Trung V. ;
Nguyen Khac Bao ;
Park, Minho .
JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2017, 91 :14-25
[99]   Detecting DDoS Attacks in Software-Defined Networks Through Feature Selection Methods and Machine Learning Models [J].
Polat, Huseyin ;
Polat, Onur ;
Cetin, Aydin .
SUSTAINABILITY, 2020, 12 (03)
[100]  
POX Installing, 2008, POX POX MANUAL CURRE