Signature and flow statistics based anomaly detection system in software-defined networking for 6G internet of things network

被引:5
|
作者
Nazar, Muhammad Junaid [1 ]
Alhudhaif, Adi [2 ]
Qureshi, Kashif Naseer [3 ]
Iqbal, Saleem [1 ]
Jeon, Gwanggil [4 ]
机构
[1] Arid Agr Univ, PMAS, Univ Inst Informat Technol UIIT, Rawalpindi, Pakistan
[2] Prince Sattam Bin Abdulaziz Univ, Coll Comp Engn & Sci, Dept Comp Sci, Al Kharj 11942, Saudi Arabia
[3] Bahria Univ, Dept Comp Sci, Islamabad, Pakistan
[4] Incheon Natl Univ, Dept Embedded Syst Engn, Incheon, South Korea
关键词
Software-defined networking (SDN); OpenFlow (OF); Flow table; Misrouting; Anomaly detection; Security; Link failure; Fast failover; Malicious behavior; 6G; IoT;
D O I
10.1007/s13198-021-01162-3
中图分类号
T [工业技术];
学科分类号
08 ;
摘要
The classical networks are vertically integrated into which control and data plane are connected which makes it more difficult to manage. Software-Defined Networking (SDN) is an emerging technology that broke this vertical integration and separates the data plane from the control plane. The entire network control is (logically) centralized that maintains a view of the network. However, the centralized controller brings a lot of security challenges. Traffic flowing through an SDN is vulnerable to disruptions caused by some of the SDN switches. In this paper, the malicious behavior on SDN switches is identified that causes disturbance in a network. The proposed system is based on attack signatures and is also capable to detect such misbehaving switches that drop and swap packets due to their malign intent rather than link failure. Every attack has some signature, and these attacks are identified by predefined signatures and their different behavior. The identification of three different attacks is demonstrated: (1) DDoS attack, (2) port scanning, and iii) traffic diversion attack to assess the network performance. The pool of attack signature is established in a database and update the system supplied pool of signature. Lastly, the conclusion is made by demonstrating the anomaly detection and evaluating the performance of the network by presenting experimental results. The experimental results demonstrate the effectiveness of the proposed work and illustrate the detection mechanism that can detect attacks, achieve high detection accuracy with a low false-positive rate, and discussing some future work.
引用
收藏
页码:87 / 97
页数:11
相关论文
共 50 条
  • [1] Signature and flow statistics based anomaly detection system in software-defined networking for 6G internet of things network
    Muhammad Junaid Nazar
    Adi Alhudhaif
    Kashif Naseer Qureshi
    Saleem Iqbal
    Gwanggil Jeon
    International Journal of System Assurance Engineering and Management, 2023, 14 : 87 - 97
  • [2] Software-Defined Networking for Internet of Things: A Survey
    Bera, Samaresh
    Misra, Sudip
    Vasilakos, Athanasios V.
    IEEE INTERNET OF THINGS JOURNAL, 2017, 4 (06): : 1994 - 2008
  • [3] Efficient Internet-of-Things Cyberattack Depletion Using Blockchain-Enabled Software-Defined Networking and 6G Network Technology
    Razaque, Abdul
    Yoo, Joon
    Bektemyssova, Gulnara
    Alshammari, Majid
    Chinibayeva, Tolganay T.
    Amanzholova, Saule
    Alotaibi, Aziz
    Umutkulov, Dauren
    SENSORS, 2023, 23 (24)
  • [4] An ecosystem for anomaly detection and mitigation in software-defined networking
    Carvalho, Luiz Fernando
    Abrao, Taufik
    Mendes, Leonardo de Souza
    Proenca, Mario Lemes, Jr.
    EXPERT SYSTEMS WITH APPLICATIONS, 2018, 104 : 121 - 133
  • [5] Employing invariants for anomaly detection in software defined networking based industrial internet of things
    Madhawa, Surendar
    Balakrishnan, P.
    Arumugam, Umamakeswari
    JOURNAL OF INTELLIGENT & FUZZY SYSTEMS, 2018, 35 (02) : 1267 - 1279
  • [6] Information Flow Tracking and Auditing for the Internet of Things Using Software-Defined Networking
    Alzahrani, Bander
    ARABIAN JOURNAL FOR SCIENCE AND ENGINEERING, 2020, 45 (04) : 3123 - 3132
  • [7] Securing the Internet of Things in the Age of Machine Learning and Software-Defined Networking
    Restuccia, Francesco
    D'Oro, Salvatore
    Melodia, Tommaso
    IEEE INTERNET OF THINGS JOURNAL, 2018, 5 (06): : 4829 - 4842
  • [8] Identity Management in Internet of Things: A Software-Defined Networking Approach
    Sadique, Kazi Masum
    Rahmani, Rahim
    Johannesson, Paul
    PROCEEDINGS OF THE 2ND INTERNATIONAL CONFERENCE ON COMMUNICATION, DEVICES AND COMPUTING, 2020, 602 : 495 - 504
  • [9] Security anomaly detection in software-defined networking based on a prediction technique
    Jafarian, Tohid
    Masdari, Mohammad
    Ghaffari, Ali
    Majidzadeh, Kambiz
    INTERNATIONAL JOURNAL OF COMMUNICATION SYSTEMS, 2020, 33 (14)
  • [10] Deep Learning Based Anomaly Detection Scheme in Software-Defined Networking
    Qin, Yang
    Wei, Junjie
    Yang, Weihong
    2019 20TH ASIA-PACIFIC NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM (APNOMS), 2019,