Detection of Control Layer DDoS Attack using Entropy metrics in SDN: An Empirical Investigation

被引:0
|
作者
Sahoo, Kshira Sagar [1 ]
Sahoo, Bibhudatta [1 ]
Vankayala, Manikanta [1 ]
Dash, Ratnakar [1 ]
机构
[1] Natl Inst Technol, Dept Comp Sci, Rourkela, India
来源
2017 NINTH INTERNATIONAL CONFERENCE ON ADVANCED COMPUTING (ICOAC) | 2017年
关键词
SDN; Controller; DDoS; General Entropy; TAXONOMY;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
The Software Defined Networks (SDN) and OpenFlow technologies become the emerging networking technology that supports the dynamic nature of the network functions through simplified network management. The main innovation behind SDN is the decoupling of forwarding plane and control plane. In control plane, the controller provides a pivotal point of control to distribute the policy information throughout the network through a standard protocol like OpenFlow. Despite numerous benefits, SDN security is still a matter of concern among the research communities. The Distributed Denial-of-Service (DDoS) attack have been posing a tremendous threat to the Internet since a long back. The variant of this attack is quickly becoming more and more complex. With the advancement in network technologies, on the one hand SDN become an important tool to defeat DDoS attacks, but on another hand, it becomes a victim of DDoS attacks due to the potential vulnerabilities exist across various SDN layer. Moreover, this article focuses on the DDoS threat to control plane which is the central point of SDN. The entropy-based DDoS detection method is a wildly used technique in the traditional network. For detection of DDoS attack in control layer of SDN, few works have employed entropy method. In this paper, taking the advantages of flow based nature of SDN, we proposed General Entropy (GE) based DDoS attack detection mechanism. The experimental results show that our detection mechanism can detect the attack quickly and achieve a high detection accuracy with a low false positive rate.
引用
收藏
页码:281 / 286
页数:6
相关论文
共 50 条
  • [1] A DDoS Attack Detection Method Using Conditional Entropy Based on SDN Traffic
    Tian, Qiwen
    Miyata, Sumiko
    IOT, 2023, 4 (02): : 95 - 111
  • [2] DDoS Attack Detection and Mitigation at SDN Data Plane Layer
    Abdulkarem, Huda Saleh
    Dawod, Ammar
    2020 IEEE 2ND GLOBAL POWER, ENERGY AND COMMUNICATION CONFERENCE (IEEE GPECOM2020), 2020, : 322 - 326
  • [3] DDoS Attack Detection Model Based on Information Entropy and DNN in SDN
    Zhang L.
    Wang J.
    Jisuanji Yanjiu yu Fazhan/Computer Research and Development, 2019, 56 (05): : 909 - 918
  • [4] Detection of DDoS Attack Using SDN in IoT: A Survey
    Pajila, P. J. Beslin
    Julie, E. Golden
    INTELLIGENT COMMUNICATION TECHNOLOGIES AND VIRTUAL MOBILE NETWORKS, ICICV 2019, 2020, 33 : 438 - 452
  • [5] DDoS attack detection in SDN: Enhancing entropy-based detection with machine learning
    Santos-Neto, Marcos J.
    Bordim, Jacir L.
    Alchieri, Eduardo A. P.
    Ishikawa, Edison
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2024, 36 (11):
  • [6] A cooperative DDoS attack detection scheme based on entropy and ensemble learning in SDN
    Shanshan Yu
    Jicheng Zhang
    Ju Liu
    Xiaoqing Zhang
    Yafeng Li
    Tianfeng Xu
    EURASIP Journal on Wireless Communications and Networking, 2021
  • [7] A DDoS Attack Detection Method Based on Information Entropy and Deep Learning in SDN
    Wang, Lu
    Liu, Ying
    PROCEEDINGS OF 2020 IEEE 4TH INFORMATION TECHNOLOGY, NETWORKING, ELECTRONIC AND AUTOMATION CONTROL CONFERENCE (ITNEC 2020), 2020, : 1084 - 1088
  • [8] A cooperative DDoS attack detection scheme based on entropy and ensemble learning in SDN
    Yu, Shanshan
    Zhang, Jicheng
    Liu, Ju
    Zhang, Xiaoqing
    Li, Yafeng
    Xu, Tianfeng
    EURASIP JOURNAL ON WIRELESS COMMUNICATIONS AND NETWORKING, 2021, 2021 (01)
  • [9] DDoS Attack Detection and Mitigation in SDN using Machine Learning
    Khashab, Fatima
    Moubarak, Joanna
    Feghali, Antoine
    Bassil, Carole
    PROCEEDINGS OF THE 2021 IEEE 7TH INTERNATIONAL CONFERENCE ON NETWORK SOFTWARIZATION (NETSOFT 2021): ACCELERATING NETWORK SOFTWARIZATION IN THE COGNITIVE AGE, 2021, : 395 - 401
  • [10] DDOS Attack Detection & Prevention in SDN using OpenFlow Statistics
    Ahuja, Nisha
    Singal, Gaurav
    PROCEEDINGS OF THE 2019 IEEE 9TH INTERNATIONAL CONFERENCE ON ADVANCED COMPUTING (IACC 2019), 2019, : 147 - 152