Detection and Mitigation of DDoS Attacks Using Conditional Entropy in Software-defined Networking

被引:11
|
作者
Xuanyuan, Ming [1 ]
Ramsurrun, Visham [1 ]
Seeam, Amar [1 ]
机构
[1] Middlesex Univ, Sch Sci & Technol, Flic En Flac, Mauritius
来源
2019 11TH INTERNATIONAL CONFERENCE ON ADVANCED COMPUTING (ICOAC 2019) | 2019年
关键词
DDoS; DDoS detection; Mitigation; SDN; Entropy;
D O I
10.1109/ICoAC48765.2019.246818
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Software-defined networking (SDN) is a relatively new technology that promotes network revolution. The most distinct characteristic of SDN is the transformation of control logic from the basic packet forwarding equipment to a centralized management unit called controller. However, the centralized control of the network resources is like a double-edged sword, for it not only brings beneficial features but also introduces single point of failure if the controller is under distributed denial of service (DDoS) attacks. In this paper, we introduce a light-weight approach based on conditional entropy to improve the SDN security with an aim of defending DDoS at the early stage. The experimental results show that the proposed method has a high average detection rate of 99.372%.
引用
收藏
页码:66 / 71
页数:6
相关论文
共 50 条
  • [41] Software-defined Networking-based DDoS Defense Mechanisms
    Swami, Rochak
    Dave, Mayank
    Ranga, Virender
    ACM COMPUTING SURVEYS, 2019, 52 (02)
  • [42] Mitigating DDoS Attacks Using OpenFlow-Based Software Defined Networking
    Jonker, Mattijs
    Sperotto, Anna
    INTELLIGENT MECHANISMS FOR NETWORK CONFIGURATION AND SECURITY, 2015, 9122 : 129 - 133
  • [43] Feature Selection and 1DCNN-based DDOS Detection in Software-Defined Networking
    Almi'ani, Noor
    Anbar, Mohammed
    Karuppayah, Shankar
    Sanjalawe, Yousef
    Alrababah, Hamza
    Abu Zwayed, Fadi
    Hasbullah, Iznan H.
    ENGINEERING LETTERS, 2024, 32 (07) : 1529 - 1544
  • [44] Lightweight solutions to counter DDoS attacks in software defined networking
    Conti, Mauro
    Lal, Chhagan
    Mohammadi, Reza
    Rawat, Umashankar
    WIRELESS NETWORKS, 2019, 25 (05) : 2751 - 2768
  • [45] Lightweight solutions to counter DDoS attacks in software defined networking
    Mauro Conti
    Chhagan Lal
    Reza Mohammadi
    Umashankar Rawat
    Wireless Networks, 2019, 25 : 2751 - 2768
  • [46] Analysis of Topology Poisoning Attacks in Software-Defined Networking
    Bui, Thanh
    Antikainen, Markku
    Aura, Tuomas
    SECURE IT SYSTEMS, NORDSEC 2019, 2019, 11875 : 87 - 102
  • [47] Analyzing effective mitigation of DDoS attack with software defined networking
    Dayal, Neelam
    Srivastava, Shashank
    COMPUTERS & SECURITY, 2023, 130
  • [48] Flooding DDoS Mitigation and Traffic Management with Software Defined Networking
    Kalliola, Aapo
    Lee, Kiryong
    Lee, Heejo
    Aura, Tuomas
    2015 IEEE 4TH INTERNATIONAL CONFERENCE ON CLOUD NETWORKING (CLOUDNET), 2015, : 248 - 254
  • [49] DDoS attacks on data plane of software-defined network: are they possible?
    Wu, Xiaotong
    Liu, Meng
    Dou, Wanchun
    Yu, Shui
    SECURITY AND COMMUNICATION NETWORKS, 2016, 9 (18) : 5444 - 5459
  • [50] Information theory-based approaches to detect DDoS attacks on software-defined networking controller a review
    Aladaileh, Mohammad A.
    Anbar, Mohammed
    Hasbullah, Iznan H.
    Sanjalawe, Yousef K.
    INTERNATIONAL JOURNAL OF EDUCATION AND INFORMATION TECHNOLOGIES, 2021, 15 : 83 - 94