Detection of Distributed Denial of Service Attacks in Software Defined Networks

被引:0
作者
Barki, Lohit [1 ]
Shidling, Amrit [1 ]
Meti, Nisharani [1 ]
Narayan, D. G. [1 ]
Mulla, Mohammed Moin [2 ]
机构
[1] BV Bhoomaraddi Coll Engn & Technol, Hubli, Karnataka, India
[2] KLE Technol Univ, Hubli, Karnataka, India
来源
2016 INTERNATIONAL CONFERENCE ON ADVANCES IN COMPUTING, COMMUNICATIONS AND INFORMATICS (ICACCI) | 2016年
关键词
SDN; DDoS; Machine learning algorithms; IDS;
D O I
暂无
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Software Defined Network (SDN) architecture is a new and novel way of network management. In SDN, switches do not process the incoming packets. They match for the incoming packets in the forwarding tables and if there is none it will be sent to the controller for processing which is the operating system of the SDN. A Distributed Denial of Service (DDoS) attack is a biggest threat to cyber security in SDN network. The attack will occur at the network layer or the application layer of the compromised systems that are connected to the network. In this paper we discuss the DDoS attacks from the traces of the traffic flow. We use different machine learning algorithms such as Naive Bayes, K-Nearest neighbour, K-means and K-medoids to classify the traffic as normal and abnormal. Then these algorithms are measured using parameters such as detection rate and efficiency. The algorithm having more accuracy is chosen to implement Signature IDS and results of it are then processed by Advanced IDS which detects anomalous behaviour based on open connections and provides accurate results of the hosts specifying which hosts is involved in the DDOS attack.
引用
收藏
页码:2576 / 2581
页数:6
相关论文
共 11 条
[1]  
[Anonymous], 2014, THESIS CARLETON U OT
[2]  
[Anonymous], THESIS
[3]  
[Anonymous], 2006, U B C
[4]  
Hebster Mark, 2014, K MEANS ALGORITHM GI
[5]   A Survey and a Layered Taxonomy of Software-Defined Networking [J].
Jarraya, Yosr ;
Madi, Taous ;
Debbabi, Mourad .
IEEE COMMUNICATIONS SURVEYS AND TUTORIALS, 2014, 16 (04) :1955-1980
[6]   Software-Defined Networking: A Comprehensive Survey [J].
Kreutz, Diego ;
Ramos, Fernando M. V. ;
Verissimo, Paulo Esteves ;
Rothenberg, Christian Esteve ;
Azodolmolky, Siamak ;
Uhlig, Steve .
PROCEEDINGS OF THE IEEE, 2015, 103 (01) :14-76
[7]  
Leung K.M., 2007, k-Nearest Neighbor Algorithm for Classification
[8]  
Ng Andrew, 2000, CS229 LECT NOTES, V1, P1
[9]  
Rayward-Smith, 2004, INT C INT DAT ENG AU
[10]  
Umarani S., 2014, INT J COMPUTER ELECT, V8