DDOS Attack Detection & Prevention in SDN using OpenFlow Statistics

被引:0
|
作者
Ahuja, Nisha [1 ]
Singal, Gaurav [1 ]
机构
[1] Bennett Univ, Dept CSE, Greater Noida, India
关键词
SDN; Mininet; Network attack; Traffic simulation; DDOS;
D O I
10.1109/iacc48062.2019.8971596
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Software defined Network is a network defined by software, which is one of the important feature which makes the legacy old networks to be flexible for dynamic configuration and so can cater to today's dynamic application requirement. It is a programmable network but it is prone to different type of attacks due to its centralized architecture. The author provided a solution to detect and prevent Distributed Denial of service attack in the paper. Mininet [5] which is a popular emulator for Software defined Network is used. We followed the approach in which collection of the traffic statistics from the various switches is done. After collection we calculated the packet rate and bandwidth which shoots up to high values when attack take place. The abrupt increase detects the attack which is then prevented by changing the forwarding logic of the host nodes to drop the packets instead of forwarding. After this, no more packets will be forwarded and then we also delete the forwarding rule in the flow table. Hence, we are finding out the change in packet rate and bandwidth to detect the attack and to prevent the attack we modify the forwarding logic of the switch flow table to drop the packets coming from malicious host instead of forwarding it.
引用
收藏
页码:147 / 152
页数:6
相关论文
共 50 条
  • [41] A Time-Efficient Approach Toward DDoS Attack Detection in IoT Network Using SDN
    Bhayo, Jalal
    Jafaq, Riaz
    Ahmed, Awais
    Hameed, Sufian
    Shah, Syed Attique
    IEEE INTERNET OF THINGS JOURNAL, 2022, 9 (05) : 3612 - 3630
  • [42] SDN-Defend: A Lightweight Online Attack Detection and Mitigation System for DDoS Attacks in SDN
    Wang, Jin
    Wang, Liping
    SENSORS, 2022, 22 (21)
  • [43] DDoS SourceTracer: An Intelligent Application for DDoS Attack Mitigation in SDN
    Aslam, Naziya
    Srivastava, Shashank
    Gore, M. M.
    COMPUTERS & ELECTRICAL ENGINEERING, 2024, 117
  • [44] Using IBE Key Distribution Strategies to Development of DDoS Attack Detection and Prevention
    Tan, Qing
    PROCEEDINGS OF THE 2013 THE INTERNATIONAL CONFERENCE ON EDUCATION TECHNOLOGY AND INFORMATION SYSTEM (ICETIS 2013), 2013, 65 : 919 - 922
  • [45] Detection and Prevention of DDOS Attack in WSN for AODV and DSR using Battery Drain
    Upadhyay, Raksha
    Khan, Salman
    Tripathi, Harendra
    Bhatt, Uma Rathore
    2015 INTERNATIONAL CONFERENCE ON COMPUTING AND NETWORK COMMUNICATIONS (COCONET), 2015, : 446 - 451
  • [46] DDOS attack detection in SDN: Method of attacks, detection techniques, challenges and research gaps
    Wabi, Abdullahi Aishatu
    Idris, Ismaila
    Olaniyi, Olayemi Mikail
    Ojeniyi, Joseph A.
    COMPUTERS & SECURITY, 2024, 139
  • [47] A Novel DDOS Attack Detection and Prevention Using DSA-DPI Method
    Chakravarthy, V. Deeban
    Prakash, K. L. N. C.
    Ramana, Kadiyala
    Gadekallu, Thippa Reddy
    INTERNATIONAL CONFERENCE ON INNOVATIVE COMPUTING AND COMMUNICATIONS, ICICC 2022, VOL 3, 2023, 492 : 733 - 743
  • [48] DDoS attack detection in SDN: Enhancing entropy-based detection with machine learning
    Santos-Neto, Marcos J.
    Bordim, Jacir L.
    Alchieri, Eduardo A. P.
    Ishikawa, Edison
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2024, 36 (11):
  • [49] UDM: NFV-based prevention mechanism against DDoS attack on SDN controller
    Qian H.
    Xue H.
    Chen M.
    Tongxin Xuebao/Journal on Communications, 2019, 40 (03): : 116 - 124
  • [50] An Investigation into the Application of Deep Learning in the Detection and Mitigation of DDOS Attack on SDN Controllers
    Gadze, James Dzisi
    Bamfo-Asante, Akua Acheampomaa
    Agyemang, Justice Owusu
    Nunoo-Mensah, Henry
    Opare, Kwasi Adu-Boahen
    TECHNOLOGIES, 2021, 9 (01)