Generalized Network Temperature for DDoS Detection through Renyi Entropy

被引:2
|
作者
Wang, Xiang [1 ]
Zhang, Xing [1 ]
Wang, Changda [1 ]
机构
[1] Jiangsu Univ, Zhenjiang, Jiangsu, Peoples R China
来源
2022 IEEE 22ND INTERNATIONAL CONFERENCE ON SOFTWARE QUALITY, RELIABILITY, AND SECURITY COMPANION, QRS-C | 2022年
关键词
network anomaly detection; generalized network temperature; EWMA; SOFTWARE-DEFINED NETWORKING; ATTACKS;
D O I
10.1109/QRS-C57518.2022.00014
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Distributed Denial-of-Services (DDoS) are serious network threats hardly eliminated. Current network entropy-based DDoS detection methods suffer from distinguishing DDoS attack traffic among normal traffic through a fixed empirical detection threshold, i.e., most of such thresholds are case-sensitive ones. With the Renyi entropy of a network, the paper devised a Generalized Network Temperature (GNT) based approach for DDoS attack detection, where GNT is a novel and fine-granular-scale statistical indicator that describes the network entropy changes in the light of both network traffic and network topology changes. Within a series of predefined time windows, our proposed approach first collects the selected network traffic features and then calculates the GNT for each time window. Second, the DDoS attacks are then acknowledged or denied by comparing each GNT to a dynamically adjustable threshold generated by the Exponentially Weighted Moving Average (EWMA) model. Furthermore, the publicly available CIC DoS 2017 dataset is utilized to test the proposed approach in the paper. The experimental results show that our proposed approach outperforms the known Shannon entropy-based DDoS attack detection methods with respect to both efficacy and efficiency.
引用
收藏
页码:24 / 33
页数:10
相关论文
共 35 条
  • [21] A comprehensive survey of network traffic anomalies and DDoS attacks detection schemes using fuzzy techniques
    Lin, Haiping
    Wu, Chengwen
    Masdari, Mohammad
    COMPUTERS & ELECTRICAL ENGINEERING, 2022, 104
  • [22] A Review of Anomaly Detection Techniques and Distributed Denial of Service (DDoS) on Software Defined Network (SDN)
    Khairi, Mutaz H. H.
    Ariffin, Sharifah H. S.
    Latiff, N. M. Abdul
    Abdullah, A. S.
    Hassan, M. K.
    ENGINEERING TECHNOLOGY & APPLIED SCIENCE RESEARCH, 2018, 8 (02) : 2724 - 2730
  • [23] An Improved Deep Learning Model for DDoS Detection Based on Hybrid Stacked Autoencoder and Checkpoint Network
    Mousa, Amthal K.
    Abdullah, Mohammed Najm
    FUTURE INTERNET, 2023, 15 (08):
  • [24] Improved Network Monitoring Using Software-Defined Networking for DDoS Detection and Mitigation Evaluation
    J. Ramprasath
    V. Seethalakshmi
    Wireless Personal Communications, 2021, 116 : 2743 - 2757
  • [25] Improved Network Monitoring Using Software-Defined Networking for DDoS Detection and Mitigation Evaluation
    Ramprasath, J.
    Seethalakshmi, V.
    WIRELESS PERSONAL COMMUNICATIONS, 2021, 116 (03) : 2743 - 2757
  • [26] Comparative Analysis of Detection of DDoS Attacks in IEEE 802.15.4 Low Rate Wireless Personal Area Network
    Balarengadurai, C.
    Saraswathi, S.
    INTERNATIONAL CONFERENCE ON MODELLING OPTIMIZATION AND COMPUTING, 2012, 38 : 3855 - 3863
  • [27] Deep network approach with stacked sparse autoencoders in detection of DDoS attacks on SDN-based VANET
    Polat, Huseyin
    Turkoglu, Muammer
    Polat, Onur
    IET COMMUNICATIONS, 2020, 14 (22) : 4089 - 4100
  • [28] Proactive DDoS detection: integrating packet marking, traffic analysis, and machine learning for enhanced network security
    Pasupathi, Subbulakshmi
    Kumar, Raushan
    Pavithra, L. K.
    CLUSTER COMPUTING-THE JOURNAL OF NETWORKS SOFTWARE TOOLS AND APPLICATIONS, 2025, 28 (03):
  • [29] A Semantic Detection Method for Network Flows With Global and Generalized Nature
    Wang, Xiaojuan
    Luo, Yiqing
    He, Mingshu
    Wang, Xinlei
    IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2024, 21 (04): : 4713 - 4730
  • [30] Machine Learning Enhanced Entropy-Based Network Anomaly Detection
    Timcenko, Valentina
    Gajin, Slavko
    ADVANCES IN ELECTRICAL AND COMPUTER ENGINEERING, 2021, 21 (04) : 51 - 60