A low-rate DDoS detection and mitigation for SDN using Renyi Entropy with Packet Drop

被引:24
作者
Ahalawat, Anchal [1 ]
Babu, Korra Sathya [2 ]
Turuk, Ashok Kumar [1 ]
Patel, Sanjeev [1 ]
机构
[1] Natl Inst Technol Rourkela, Dept Comp Sci & Engn, Rourkela 769008, Odisha, India
[2] Indian Inst Informat Technol Kurnool, Dept Comp Sci & Engn, Kurnool 518007, Andhra Pradesh, India
关键词
SDN; OpenFlow; Low-rate DDoS; Renyi entropy; Information distance; ALGORITHM; PROTECTION; ATTACKS; DEFENSE;
D O I
10.1016/j.jisa.2022.103212
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Software-Defined Networking (SDN) is an approach to network architecture that enables software applications used for intelligent, centralized network management or scheduling. It is gaining popularity due to its flexibility, agility, and scalability feature. SDN provides high network programmability and speeds up the network variation by forwarding the control layer from the data layer. The logically centralized controller is always an attractive target for the Distributed Denial of Service (DDoS) attacks. According to various specifications, the low-rate DDoS attack is often not easy to detect against SDN because attackers behave like legitimate traffic. Hence, it is essential to have a fast and accurate detection model to detect the data layer attack traffic timely so that it could not affect on available resources such as bandwidth, memory, central processing unit (CPU). In this paper, we propose a DDoS detection technique based on Renyi Entropy with Packet Drop (REPD) where packets drop method is used for the purpose of mitigation. The information distance metric has been used to evaluate the fluctuation of network traffic with various probability distributions. Also, an extensive simulation has been carried out on the synthetic data to improve the performance in terms of detection time and accuracy. It was observed that the attained results outperformed the Shannon Entropy (SE), Generalized Entropy, and other statistical distance metrics.
引用
收藏
页数:15
相关论文
共 50 条
[41]   Co-IoT: A Collaborative DDoS mitigation scheme in IoT environment based on blockchain using SDN [J].
El Houda, Zakaria Abou ;
Hafid, Abdelhakim ;
Khoukhi, Lyes .
2019 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2019,
[42]   DOCUS-DDoS detection in SDN using modified CUSUM with flash traffic discrimination and mitigation [J].
Shalini, P. V. ;
Radha, V. ;
Sanjeevi, Sriram G. .
COMPUTER NETWORKS, 2022, 217
[43]   An optimized weighted voting based ensemble model for DDoS attack detection and mitigation in SDN environment [J].
Maheshwari, Aastha ;
Mehraj, Burhan ;
Khan, Mohd Shaad ;
Idrisi, Mohd Shaheem .
MICROPROCESSORS AND MICROSYSTEMS, 2022, 89
[44]   Detection and Mitigation of DDoS Attacks Using Conditional Entropy in Software-defined Networking [J].
Xuanyuan, Ming ;
Ramsurrun, Visham ;
Seeam, Amar .
2019 11TH INTERNATIONAL CONFERENCE ON ADVANCED COMPUTING (ICOAC 2019), 2019, :66-71
[45]   Leveraging Frame Aggregation in Wi-Fi IoT Networks for Low-Rate DDoS Attack Detection [J].
Tushir, Bhagyashri ;
Liu, Yuhong ;
Dezfouli, Behnam .
NETWORK AND SYSTEM SECURITY, NSS 2022, 2022, 13787 :319-334
[46]   An Investigation into the Application of Deep Learning in the Detection and Mitigation of DDOS Attack on SDN Controllers [J].
Gadze, James Dzisi ;
Bamfo-Asante, Akua Acheampomaa ;
Agyemang, Justice Owusu ;
Nunoo-Mensah, Henry ;
Opare, Kwasi Adu-Boahen .
TECHNOLOGIES, 2021, 9 (01)
[47]   DDoS attack detection in SDN: Enhancing entropy-based detection with machine learning [J].
Santos-Neto, Marcos J. ;
Bordim, Jacir L. ;
Alchieri, Eduardo A. P. ;
Ishikawa, Edison .
CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2024, 36 (11)
[48]   FlowTrApp: An SDN Based Architecture for DDoS Attack Detection and Mitigation in Data Centers [J].
Buragohain, Chaitanya ;
Medhi, Nabajyoti .
2016 3RD INTERNATIONAL CONFERENCE ON SIGNAL PROCESSING AND INTEGRATED NETWORKS (SPIN), 2016, :525-530
[49]   ARDefense: DDoS detection and prevention using NFV and SDN [J].
Singh, Arran Kumar ;
Jaiswal, Raj K. ;
Abdukodir, Khakimov ;
Muthanna, Ammar .
2020 12TH INTERNATIONAL CONGRESS ON ULTRA MODERN TELECOMMUNICATIONS AND CONTROL SYSTEMS AND WORKSHOPS (ICUMT 2020), 2020, :236-241
[50]   Detection of DDoS Attack Using SDN in IoT: A Survey [J].
Pajila, P. J. Beslin ;
Julie, E. Golden .
INTELLIGENT COMMUNICATION TECHNOLOGIES AND VIRTUAL MOBILE NETWORKS, ICICV 2019, 2020, 33 :438-452