ONOS DDoS Defender: A Comparative Analysis of Existing DDoS Attack Datasets using Ensemble Approach

被引:2
作者
Aslam, Naziya [1 ]
Srivastava, Shashank [1 ]
Gore, M. M. [1 ]
机构
[1] Motilal Nehru Natl Inst Technol Allahabad, Dept Comp Sci & Engn, Prayagraj 211004, India
关键词
SDN; Mininet; DDoS Attack; ONOS; Machine Learning; MACHINE;
D O I
10.1007/s11277-023-10848-9
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
Software-Defined Networking (SDN) outperforms conventional networks in terms of programmability, management, flexibility, and efficiency. This is because SDN separates the control and data planes. The centralised control of devices aids in the prevention of Distributed Denial of Service (DDoS) attacks. The controller has a larger network perspective and has the ability to filter network traffic in order to detect harmful flows. The separation of the control and data planes provided benefits, but it is vulnerable to DDoS attacks. DDoS assaults are difficult to detect and resist in real-time. This is only possible if appropriate features for attack detection are chosen. We intend to employ feature selection methods such as BORUTA, IRelief, Random Forest, Information Gain and Chi-Square Test to obtain the most relevant features for DDoS detection. Moreover, we have devised a strategy to detect and mitigate DDoS attack using tracebacking approach through ONOS Flood Defender (OFD) Application. The application effectively detects different DDoS attack traffic using XGBoost and Multilayer Perceptron algorithms with 99% accuracy and least testing times without adding unnecessary load to the system and mitigates the attack in approximately 3.2 s using tracebacking approach. We have performed our experiment on four benchmark datasets CIC-DoS 2017, CIC-DDoS 2019, CIC-IDS 2018 and InSDN. We have evaluated the trade-off between detection accuracy and testing time in order to determine the most effective detection model for addressing DDoS attacks on SDN networks.
引用
收藏
页码:1805 / 1827
页数:23
相关论文
共 38 条
  • [21] OpenFlow: Enabling innovation in campus networks
    McKeown, Nick
    Anderson, Tom
    Balakrishnan, Hari
    Parulkar, Guru
    Peterson, Larry
    Rexford, Jennifer
    Shenker, Scott
    Turner, Jonathan
    [J]. ACM SIGCOMM COMPUTER COMMUNICATION REVIEW, 2008, 38 (02) : 69 - 74
  • [22] Detection of DDoS DNS Amplification Attack Using Classification Algorithm
    Meitei, Irom Lalit
    Singh, Khundrakpam Johnson
    De, Tanmay
    [J]. PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON INFORMATICS AND ANALYTICS (ICIA' 16), 2016,
  • [23] High-Potency Models of LDoS Attack Against CUBIC plus RED
    Yue, Meng
    Li, Jing
    Wu, Zhijun
    Wang, Minxiao
    [J]. IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2021, 16 : 4950 - 4965
  • [24] A DDoS Attack Mitigation Scheme in ISP Networks Using Machine Learning Based on SDN
    Nguyen Ngoc Tuan
    Pham Huy Hung
    Nguyen Danh Nghia
    Nguyen Van Tho
    Trung Van Phan
    Nguyen Huu Thanh
    [J]. ELECTRONICS, 2020, 9 (03)
  • [25] Nygren A., 2021, Openflow switch specification
  • [26] A taxonomy and survey of attacks against machine learning
    Pitropakis, Nikolaos
    Panaousis, Emmanouil
    Giannetsos, Thanassis
    Anastasiadis, Eleftherios
    Loukas, George
    [J]. COMPUTER SCIENCE REVIEW, 2019, 34
  • [27] Detecting DDoS Attacks in Software-Defined Networks Through Feature Selection Methods and Machine Learning Models
    Polat, Huseyin
    Polat, Onur
    Cetin, Aydin
    [J]. SUSTAINABILITY, 2020, 12 (03)
  • [28] A deep learning based intelligent framework to mitigate DDoS attack in fog environment
    Priyadarshini, Rojalina
    Barik, Rabindra Kumar
    [J]. JOURNAL OF KING SAUD UNIVERSITY-COMPUTER AND INFORMATION SCIENCES, 2022, 34 (03) : 825 - 831
  • [29] Sanfilippo S., 2021, hping3(8)-linux man page
  • [30] Sharafaldin I., 2017, Software Networking, V2017, P177