Inline detection of Denial of Service Attacks in Software Defined Networking using the Hotelling Chart

被引:2
作者
Bensalah, Faycal [1 ]
Kamoun, Najib E. L. [1 ]
El Houssaini, Mohammed-Alamine [2 ]
机构
[1] Univ Chouaib Doukkali, Fac Sci, Lab STIC, El Jadida 24000, Morocco
[2] Chouaib Doukkali Univ, El Jadida 24000, Morocco
来源
10TH INT CONF ON EMERGING UBIQUITOUS SYST AND PERVAS NETWORKS (EUSPN-2019) / THE 9TH INT CONF ON CURRENT AND FUTURE TRENDS OF INFORMAT AND COMMUN TECHNOLOGIES IN HEALTHCARE (ICTH-2019) / AFFILIATED WORKOPS | 2019年 / 160卷
关键词
Software Defined Network; DDoS Attack; Attack Detection; Network Security;
D O I
10.1016/j.procs.2019.11.010
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Software Defined Network (SDN) has become the true trend of the IT service model offering a cost-effective and scalable processing solution. Although central control is the major asset of the SDN, it is also a single point of failure if it is made inaccessible by a distributed denial of service (DDoS) attack. Despite the number of existing traditional detection solutions, DDoS attacks continue to increase in frequency, volume and severity. This paper provides an analysis of the problem by examining the impact on security, particularly for distributed denial of service (DDoS) attacks that is still a threat to SDN software-defined networks and suggests the proposal and implementation of a DDoS attack detection algorithm. Based on an architecture that integrates highly programmable network monitoring and a flexible control structure to enable fast and specific attack detection. To cope with the new architecture, we propose an attack detection system based on a statistical model that can address the problem of flooding attack and bandwidth attack. The simulation results show that our architecture can effectively address the security challenges posed by the new network paradigm and our attack detection system can effectively signal various attacks using realworld network traffic. (C) 2019 The Authors. Published by Elsevier B. V.
引用
收藏
页码:785 / 790
页数:6
相关论文
共 6 条
[1]   Research Trends in Security and DDoS in SDN [J].
Dayal, Neelam ;
Maity, Prasenjit ;
Srivastava, Shashank ;
Khondoker, Rahamatullah .
SECURITY AND COMMUNICATION NETWORKS, 2016, 9 (18) :6386-6411
[2]   Detection of Jamming Attacks in Mobile Ad Hoc Networks using Statistical Process Control [J].
El Houssaini, Mohammed-Alamine ;
Aaroud, Abdessadek ;
El Hore, Ali ;
Ben-Othman, Jalel .
7TH INTERNATIONAL CONFERENCE ON AMBIENT SYSTEMS, NETWORKS AND TECHNOLOGIES (ANT 2016) / THE 6TH INTERNATIONAL CONFERENCE ON SUSTAINABLE ENERGY INFORMATION TECHNOLOGY (SEIT-2016) / AFFILIATED WORKSHOPS, 2016, 83 :26-33
[3]  
Freire P, 2014, QUAL INQ SOC JUSTICE, P1
[4]  
Mousavi SM, 2015, 2015 INTERNATIONAL CONFERENCE ON COMPUTING, NETWORKING AND COMMUNICATIONS (ICNC), P77, DOI 10.1109/ICCNC.2015.7069319
[5]  
PILLET M, 2005, APPL MAITRISE STAT P
[6]   A novel dynamic framework to detect DDoS in SDN using metaheuristic clustering [J].
Shakil, Muhammad ;
Mohammed, Alaelddin Fuad Yousif ;
Arul, Rajakumar ;
Bashir, Ali Kashif ;
Choi, Jun Kyun .
TRANSACTIONS ON EMERGING TELECOMMUNICATIONS TECHNOLOGIES, 2022, 33 (03)