Detection of DDoS Attacks Against Wireless SDN Controllers Based on the Fuzzy Synthetic Evaluation Decision-making Model

被引:0
|
作者
Yan, Qiao [1 ]
Gong, Qingxiang [1 ]
Deng, Fang-an [2 ]
机构
[1] Shenzhen Univ, Coll Comp Sci & Software Engn, Shenzhen, Guangdong, Peoples R China
[2] Shanxi Sci Tech Univ, Sch Math & Comp Sci, Hanzhong, Shanxi, Peoples R China
基金
美国国家科学基金会;
关键词
SDN; openflow; DDoS attacks; fuzzy synthetic evaluation decision-making model; entropy; SOFTWARE-DEFINED NETWORKING; CELLULAR NETWORKS; IMMUNE ALGORITHM;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Software Defined Networking (SDN) is a new network architecture that separates the control plane and the data plane and provides logically central control over the whole network. Because SDN controller combines the upper application layer and the underlying infrastructure layer, it may face the problem of single-point failure. If it is made unreachable by a Distributed Denial of Service (DDoS) attacks, the whole network may not work normally. Especially for wireless SDN controllers, due to the secure channel for the control protocol in communication between wireless SDN controller and wireless SDN devices is exposed in the attacker's field of vision, the attack range of DDoS attackers will be expanded. To mitigate this threat, this paper introduces a solution based on fuzzy synthetic evaluation decision-making model that is effective and lightweight in terms of the resources that it uses. Importantly, it takes many factors that can be used to detect DDoS attacks into consideration and makes a comprehensive judgment according to multifactors. To test the solution, the paper also proposes three kinds of DDoS attacks specialized for SDN network and presents two kinds of DDoS attacks inherited from traditional network. Every attack has been tested with the detection method. Finally, we also make a comparable experiment to show its advantage to other DDoS detection algorithm based on single factor. The results show its efficiency in detecting most of the DDoS attacks.
引用
收藏
页码:275 / 299
页数:25
相关论文
共 50 条
  • [1] Early Detection of DDoS Attacks against SDN Controllers
    Mousavi, Seyed Mohammad
    St-Hilaire, Marc
    2015 INTERNATIONAL CONFERENCE ON COMPUTING, NETWORKING AND COMMUNICATIONS (ICNC), 2015, : 77 - 81
  • [2] An SDN-based Decision Tree Detection (DTD) Model for Detecting DDoS Attacks in Cloud Environment
    Praba, J. Jeba
    Sridaran, R.
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2022, 13 (07) : 54 - 64
  • [3] Risk evaluation of excavation based on fuzzy decision-making model
    Lin, Song-Shun
    Zhang, Ning
    Zhou, Annan
    Shen, Shui-Long
    AUTOMATION IN CONSTRUCTION, 2022, 136
  • [4] Defending SDN-based IoT Networks Against DDoS Attacks Using Markov Decision Process
    Zheng, Jianjun
    Namin, Akbar Siami
    2018 IEEE INTERNATIONAL CONFERENCE ON BIG DATA (BIG DATA), 2018, : 4589 - 4592
  • [5] Comprehensive Quality Evaluation Model for College Students Based on Fuzzy Decision-making
    Wei, Ying
    INFORMATION TECHNOLOGY APPLICATIONS IN INDUSTRY, PTS 1-4, 2013, 263-266 : 3453 - 3456
  • [6] Fuzzy Decision-Making Model for Solar Photovoltaic Panel Evaluation
    Ziemba, Pawel
    Szaja, Marta
    ENERGIES, 2023, 16 (13)
  • [7] Evaluation model of the graduate career decision-making on fuzzy AHP
    Zhang, X. J.
    Zhang, X. P.
    Xu, Q. N.
    INFORMATION SCIENCE AND MANAGEMENT ENGINEERING, VOLS 1-3, 2014, 46 : 1029 - 1035
  • [8] Jamming detection approach based on fuzzy assisted multicriteria decision-making system for wireless sensor networks
    Vijayakumar, K. P.
    Ganeshkumar, P.
    INTERNATIONAL JOURNAL OF COMMUNICATION SYSTEMS, 2019, 32 (12)
  • [9] DETPro: A High-efficiency and Low-latency System against DDoS Attacks in SDN Based on Decision Tree
    Chen, Yixin
    Pei, Jianing
    Li, Defang
    ICC 2019 - 2019 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS (ICC), 2019,
  • [10] Risk-based decision-making for drilling waste discharges using a fuzzy synthetic evaluation technique
    Sadiq, R
    Husain, T
    Veitch, B
    Bose, N
    OCEAN ENGINEERING, 2004, 31 (16) : 1929 - 1953