Self-healing topology for DDoS attack identification & discovery protocol in software-defined networks

被引:9
|
作者
Sharma, Gajanand [1 ]
Sharma, Himanshu [1 ]
Pareek, Rajneesh [1 ]
Gour, Nidhi [1 ]
Sharma, Ravi Shanker [1 ]
Kumar, Ashutosh [1 ]
机构
[1] JECRC Univ, Dept Comp Sci & Engn, Jaipur 303905, Rajasthan, India
来源
JOURNAL OF DISCRETE MATHEMATICAL SCIENCES & CRYPTOGRAPHY | 2021年 / 24卷 / 08期
关键词
SDN; Dos attack; Open flow; Accuracy; HyPASS. POX & RYU; PACKET INJECTION ATTACK;
D O I
10.1080/09720529.2021.2009192
中图分类号
O29 [应用数学];
学科分类号
070104 ;
摘要
Software defined networking is an emerging network architecture that separates the control plane from the data plane of network devices and places the control plane on one or more control servers capable of managing the rules traffic forwarding of all communication devices under your domain. This article describes the architecture, different modules, and event sequences of the HyPASS for real-time protection from address-forged attacks with proactive host discovery and address validation. Such attacks cause the wastage of network bandwidth, processing power, and network resources available to the user. We performed the latency, throughput, and attack prevention tests using POX & RYU controllers on the Mininet network simulator with and without HyPASS. The system performance is analyzed for accuracy and efficiency in four different SDN scenarios categorized as fully OpenFlow enabled and Hybrid. The proposed system discovers all the live hosts in the network, updates Host Table at the handshaking between controller and OpenFlow switches. Experiments show that the system prevented all the address-forged attacks by validating the source address in different SDN environments. It achieves a 99.99% filtering accuracy level in a fully OpenFlow-enabled setup.
引用
收藏
页码:2221 / 2232
页数:12
相关论文
共 50 条
  • [21] A DDoS Attack Detection and Mitigation With Software-Defined Internet of Things Framework
    Yin, Da
    Zhang, Lianming
    Yang, Kun
    IEEE ACCESS, 2018, 6 : 24694 - 24705
  • [22] DDoS Attack Protection in the Era of Cloud Computing and Software-Defined Networking
    Wang, Bing
    Zheng, Yao
    Lou, Wenjing
    Hou, Y. Thomas
    2014 IEEE 22ND INTERNATIONAL CONFERENCE ON NETWORK PROTOCOLS (ICNP), 2014, : 624 - 629
  • [23] CAMEL: Centrality-Aware Multitemporal Discovery Protocol for Software-defined Networks
    Alenezi, Faheed A. F.
    Song, Sejun
    Choi, Baek-Young
    30TH INTERNATIONAL CONFERENCE ON COMPUTER COMMUNICATIONS AND NETWORKS (ICCCN 2021), 2021,
  • [24] Towards an Efficient DDoS Detection Scheme for Software-Defined Networks
    Lima, N. A. S.
    Fernandez, M. P.
    IEEE LATIN AMERICA TRANSACTIONS, 2018, 16 (08) : 2296 - 2301
  • [25] Detecting DDoS based on attention mechanism for Software-Defined Networks
    Yoon, Namkyung
    Kim, Hwangnam
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2024, 230
  • [26] Comprehensive Analysis of DDoS Anomaly Detection in Software-Defined Networks
    Hirsi, Abdinasir
    Alhartomi, Mohammed A.
    Audah, Lukman
    Salh, Adeb
    Sahar, Nan Mad
    Ahmed, Salman
    Ansa, Godwin Okon
    Farah, Abdullahi
    IEEE ACCESS, 2025, 13 : 23013 - 23071
  • [27] Emerging DDoS attack detection and mitigation strategies in software-defined networks: Taxonomy, challenges and future directions
    Valdovinos, Ismael Amezcua
    Perez-Diaz, Jesus Arturo
    Choo, Kim-Kwang Raymond
    Botero, Juan Felipe
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2021, 187
  • [28] Advanced Authentication Protocol for Software-Defined Networks
    Allouzi, Maha Ali
    Khan, Javed, I
    INTERNATIONAL JOURNAL OF SEMANTIC COMPUTING, 2018, 12 (03) : 361 - 371
  • [29] DDoS Attack Detection in Software Defined Networks by Various Metrics
    Saadallah N.R.
    Al-Talib S.A.A.
    Malallah F.L.
    Recent Patents on Engineering, 2022, 16 (02)
  • [30] A DDoS attack detection based on deep learning in software-defined Internet of things
    Wang, Jiushuang
    Liu, Ying
    Su, Wei
    Feng, Huifen
    2020 IEEE 92ND VEHICULAR TECHNOLOGY CONFERENCE (VTC2020-FALL), 2020,