Self-healing topology for DDoS attack identification & discovery protocol in software-defined networks

被引:9
|
作者
Sharma, Gajanand [1 ]
Sharma, Himanshu [1 ]
Pareek, Rajneesh [1 ]
Gour, Nidhi [1 ]
Sharma, Ravi Shanker [1 ]
Kumar, Ashutosh [1 ]
机构
[1] JECRC Univ, Dept Comp Sci & Engn, Jaipur 303905, Rajasthan, India
来源
JOURNAL OF DISCRETE MATHEMATICAL SCIENCES & CRYPTOGRAPHY | 2021年 / 24卷 / 08期
关键词
SDN; Dos attack; Open flow; Accuracy; HyPASS. POX & RYU; PACKET INJECTION ATTACK;
D O I
10.1080/09720529.2021.2009192
中图分类号
O29 [应用数学];
学科分类号
070104 ;
摘要
Software defined networking is an emerging network architecture that separates the control plane from the data plane of network devices and places the control plane on one or more control servers capable of managing the rules traffic forwarding of all communication devices under your domain. This article describes the architecture, different modules, and event sequences of the HyPASS for real-time protection from address-forged attacks with proactive host discovery and address validation. Such attacks cause the wastage of network bandwidth, processing power, and network resources available to the user. We performed the latency, throughput, and attack prevention tests using POX & RYU controllers on the Mininet network simulator with and without HyPASS. The system performance is analyzed for accuracy and efficiency in four different SDN scenarios categorized as fully OpenFlow enabled and Hybrid. The proposed system discovers all the live hosts in the network, updates Host Table at the handshaking between controller and OpenFlow switches. Experiments show that the system prevented all the address-forged attacks by validating the source address in different SDN environments. It achieves a 99.99% filtering accuracy level in a fully OpenFlow-enabled setup.
引用
收藏
页码:2221 / 2232
页数:12
相关论文
共 50 条
  • [1] Self-Healing Topology Discovery Protocol for Software-Defined Networks
    Ochoa-Aday, Leonardo
    Cervello-Pastor, Cristina
    Fernandez-Fernandez, Adriana
    IEEE COMMUNICATIONS LETTERS, 2018, 22 (05) : 1070 - 1073
  • [2] eTDP: Enhanced Topology Discovery Protocol for Software-Defined Networks
    Ochoa-Aday, Leonardo
    Cervello-Pastor, Cristina
    Fernandez-Fernandez, Adriana
    IEEE ACCESS, 2019, 7 : 23471 - 23487
  • [3] Overview of DDoS Attack Detection in Software-Defined Networks
    Wang, Heyu
    Li, Yixuan
    IEEE ACCESS, 2024, 12 : 38351 - 38381
  • [4] Efficient Topology Discovery for Software-Defined Networks
    Chang, Yi-Cheng
    Lin, Hsin-Tsung
    Chu, Hung-Mao
    Wang, Pi-Chung
    IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2021, 18 (02): : 1375 - 1388
  • [5] EDiPSo: An Efficient Scalable Topology Discovery Protocol for Software-Defined Vehicular Networks
    Aljeri, Noura
    Boukerche, Azzedine
    COMPUTER NETWORKS, 2021, 200
  • [6] A Distributed Algorithm for Topology Discovery in Software-Defined Networks
    Ochoa-Aday, Leonardo
    Cervello-Pastor, Cristina
    Fernandez-Fernandez, Adriana
    TRENDS IN PRACTICAL APPLICATIONS OF SCALABLE MULTI-AGENT SYSTEMS, THE PAAMS COLLECTION, 2016, 473 : 363 - 367
  • [7] DDoS Attack Detection Method Based on Improved KNN With the Degree of DDoS Attack in Software-Defined Networks
    Dong, Shi
    Sarem, Mudar
    IEEE ACCESS, 2020, 8 : 5039 - 5048
  • [8] Dynamic Topology Discovery Configuration in Software-Defined Vehicular Networks
    Papadakis, Athanasios
    Theodorou, Tryfon
    Mamatas, Lefteris
    Petridou, Sophia
    2022 IEEE CONFERENCE ON STANDARDS FOR COMMUNICATIONS AND NETWORKING, CSCN, 2022, : 124 - 130
  • [9] FuzzyGuard: A DDoS attack prevention extension in software-defined wireless sensor networks
    Huang, Meigen
    Yu, Bin
    KSII TRANSACTIONS ON INTERNET AND INFORMATION SYSTEMS, 2019, 13 (07): : 3671 - 3689
  • [10] Optimized Self-healing Framework for Software Defined Networks
    Thorat, Pankaj
    Raza, S. M.
    Nguyen, Dung T.
    Im, Giyeol
    Choo, Hyunseung
    Kim, Dongsoo S.
    ACM IMCOM 2015, PROCEEDINGS, 2015,