DDoS Attack Detection in SDN: Optimized Deep Convolutional Neural Network with Optimal Feature Set

被引:10
作者
Singh, Sukhvinder [1 ]
Jayakumar, S. K., V [2 ]
机构
[1] Pondicherry Cent Univ, Dept Comp Sci, Pondicherry, India
[2] Pondicherry Univ, Dept Comp Sci, Kalapet 605014, Puducherry, India
关键词
Software defined networking; DDoS attack; Classification; Feature extraction; Optimization; MITIGATION; DEFENSE;
D O I
10.1007/s11277-022-09685-z
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
This framework attempts to introduce a new Distributed denial-of-service (DDoS) attack detection and mitigation model. It is comprised of two stages, namely DDoS attack detection and mitigation. The first stage consists of three important phases like feature extraction, optimal feature selection, and classification. In order to optimally select the features of obtained feature sets, a new improved algorithm is implanted named Improved Update oriented Rider Optimization Algorithm (IU-ROA), which is the modification of the Rider Optimization Algorithm (ROA) algorithm. The optimal features are subjected to classification using the Deep Convolutional Neural Network (CNN) model, in which the presence of network attacks can be detected. The second stage is the mitigation of the attacker node. For this, a bait detection mechanism is launched, which provides the effective mitigation of malicious nodes having Distributed Denial-of-Service (DDoS) attacks. The experimentation is done on the KDD cup 99 dataset and the experimental analysis proves that the proposed model generates a better result which is 90.06% in mitigation analysis and the overall performance analysis of the proposed model on DDoS Attack Detection is 96% better than conventional methods.
引用
收藏
页码:2781 / 2797
页数:17
相关论文
共 49 条
[31]   An early detection of low rate DDoS attack to SDN based data center networks using information distance metrics [J].
Sahoo, Kshira Sagar ;
Puthal, Deepak ;
Tiwary, Mayank ;
Rodrigues, Joel J. P. C. ;
Sahoo, Bibhudatta ;
Dash, Ratnakar .
FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2018, 89 :685-697
[32]   An intelligent cyber security system against DDoS attacks in SIP networks [J].
Semerci, Murat ;
Cemgil, Ali Taylan ;
Sankur, Bulent .
COMPUTER NETWORKS, 2018, 136 :137-154
[33]   OpCloudSec: Open cloud software defined wireless network security for the Internet of Things [J].
Sharma, Pradip Kumar ;
Singh, Saurabh ;
Park, Jong Hyuk .
COMPUTER COMMUNICATIONS, 2018, 122 :1-8
[34]  
Shirsat P., 2020, Multimedia Research, P24, DOI [10.46253/j.mr.v3i4.a3, DOI 10.46253/J.MR.V3I4.A3]
[35]   MLP-GA based algorithm to detect application layer DDoS attack [J].
Singh, Khundrakpam Johnson ;
De, Tanmay .
JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2017, 36 :145-153
[36]  
Srinivasa Rao T C, 2019, J. Comput. Mech. Power Syst. Control, V2, P39, DOI DOI 10.46253/JCMPS.V2I3.A5
[37]   Rank distribution for determining the threshold values of network variables and the analysis of DDoS attacks [J].
Sukhov, A. M. ;
Sagatov, E. S. ;
Baskakov, A. V. .
3RD INTERNATIONAL CONFERENCE INFORMATION TECHNOLOGY AND NANOTECHNOLOGY (ITNT-2017), 2017, 201 :417-427
[38]   Cellular Automata-based Improved Ant Colony-based Optimization Algorithm for mitigating DDoS attacks in VANETs [J].
Thilak, I. Deepa ;
Amuthan, A. .
FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2018, 82 :304-314
[39]   Risk based Security Enforcement in Software Defined Network [J].
Tripathy, Bata Krishna ;
Das, Debi Prasad ;
Jena, Swagat Kumar ;
Bera, Padmalochan .
COMPUTERS & SECURITY, 2018, 78 :321-335
[40]   Fuzzy-Taylor-elephant herd optimization inspired Deep Belief Network for DDoS attack detection and comparison with state-of-the-arts algorithms [J].
Velliangiri, S. ;
Pandey, Hari Mohan .
FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2020, 110 :80-90