Signature and flow statistics based anomaly detection system in software-defined networking for 6G internet of things network

被引:5
|
作者
Nazar, Muhammad Junaid [1 ]
Alhudhaif, Adi [2 ]
Qureshi, Kashif Naseer [3 ]
Iqbal, Saleem [1 ]
Jeon, Gwanggil [4 ]
机构
[1] Arid Agr Univ, PMAS, Univ Inst Informat Technol UIIT, Rawalpindi, Pakistan
[2] Prince Sattam Bin Abdulaziz Univ, Coll Comp Engn & Sci, Dept Comp Sci, Al Kharj 11942, Saudi Arabia
[3] Bahria Univ, Dept Comp Sci, Islamabad, Pakistan
[4] Incheon Natl Univ, Dept Embedded Syst Engn, Incheon, South Korea
关键词
Software-defined networking (SDN); OpenFlow (OF); Flow table; Misrouting; Anomaly detection; Security; Link failure; Fast failover; Malicious behavior; 6G; IoT;
D O I
10.1007/s13198-021-01162-3
中图分类号
T [工业技术];
学科分类号
08 ;
摘要
The classical networks are vertically integrated into which control and data plane are connected which makes it more difficult to manage. Software-Defined Networking (SDN) is an emerging technology that broke this vertical integration and separates the data plane from the control plane. The entire network control is (logically) centralized that maintains a view of the network. However, the centralized controller brings a lot of security challenges. Traffic flowing through an SDN is vulnerable to disruptions caused by some of the SDN switches. In this paper, the malicious behavior on SDN switches is identified that causes disturbance in a network. The proposed system is based on attack signatures and is also capable to detect such misbehaving switches that drop and swap packets due to their malign intent rather than link failure. Every attack has some signature, and these attacks are identified by predefined signatures and their different behavior. The identification of three different attacks is demonstrated: (1) DDoS attack, (2) port scanning, and iii) traffic diversion attack to assess the network performance. The pool of attack signature is established in a database and update the system supplied pool of signature. Lastly, the conclusion is made by demonstrating the anomaly detection and evaluating the performance of the network by presenting experimental results. The experimental results demonstrate the effectiveness of the proposed work and illustrate the detection mechanism that can detect attacks, achieve high detection accuracy with a low false-positive rate, and discussing some future work.
引用
收藏
页码:87 / 97
页数:11
相关论文
共 50 条
  • [41] Basic issues related to the Internet of Things in the 6G system
    Krupanek, Beata
    Bogacz, Ryszard
    PRZEGLAD ELEKTROTECHNICZNY, 2022, 98 (11): : 165 - 168
  • [42] Toward 6G Internet of Things and the Convergence With RoF System
    Chen, Na
    Okada, Minoru
    IEEE INTERNET OF THINGS JOURNAL, 2021, 8 (11) : 8719 - 8733
  • [43] SDN-PANDA: Software-Defined Network Platform for ANomaly Detection Applications
    Granby, Brian R.
    Askwith, Bob
    Marnerides, Angelos K.
    2015 IEEE 23RD INTERNATIONAL CONFERENCE ON NETWORK PROTOCOLS (ICNP), 2015, : 463 - 466
  • [44] Flow-based intrusion detection on software-defined networks: a multivariate time series anomaly detection approach
    Zavrak, Sultan
    Iskefiyeli, Murat
    NEURAL COMPUTING & APPLICATIONS, 2023, 35 (16) : 12175 - 12193
  • [45] Flow-based intrusion detection on software-defined networks: a multivariate time series anomaly detection approach
    Sultan Zavrak
    Murat Iskefiyeli
    Neural Computing and Applications, 2023, 35 : 12175 - 12193
  • [46] IDSoft: A federated and softwarized intrusion detection framework for massive internet of things in 6G network
    Alotaibi, Asma
    Barnawi, Ahmed
    JOURNAL OF KING SAUD UNIVERSITY-COMPUTER AND INFORMATION SCIENCES, 2023, 35 (06)
  • [47] Controlled Service Scheduling Scheme for User-Centric Software-Defined Network- Based Internet of Things
    Albekairi, Mohammed
    IEEE ACCESS, 2025, 13 : 19198 - 19218
  • [48] Flow Scheduling in OBS Networks Based on Software-Defined Networking Control Plane
    Tang, Wan
    Chen, Fan
    Chen, Min
    Liu, Guo
    KSII TRANSACTIONS ON INTERNET AND INFORMATION SYSTEMS, 2016, 10 (01): : 1 - 17
  • [49] An Entropy-Based Distributed DDoS Detection Mechanism in Software-Defined Networking
    Wang, Rui
    Jia, Zhiping
    Ju, Lei
    2015 IEEE TRUSTCOM/BIGDATASE/ISPA, VOL 1, 2015, : 310 - 317
  • [50] Anomaly Detection and Bottleneck Identification of The Distributed Application in Cloud Data Center using Software-Defined Networking
    El-Shamy, Ahmed M.
    El-Fishawy, Nawal A.
    Attiya, Gamal
    Mohamed, Mokhtar A. A.
    EGYPTIAN INFORMATICS JOURNAL, 2021, 22 (04) : 417 - 432