Collaborative Detection and Mitigation of Distributed Denial-of-Service Attacks on Software-Defined Network

被引:0
作者
Omer Elsier Tayfour
Muhammad Nadzir Marsono
机构
[1] Universiti Teknologi Malaysia,School of Electrical Engineering, Faculty of Engineering
来源
Mobile Networks and Applications | 2020年 / 25卷
关键词
Software-Defined Network (SDN); Distributed Denial-of-Service (DDoS); Redis Simple Message Queue (RSMQ);
D O I
暂无
中图分类号
学科分类号
摘要
This paper presents a collaborative technique to detect and mitigate Distributed Denial-of-Service (DDoS) flooding attacks on Software-Defined Network (SDN). This technique integrates sflow-RT application and Snort rules for the detection of DDoS traffic flows in an SDN controller. Redis Simple Message Queue (RSMQ) acts as a mechanism to share DDoS detection and mitigation rules among multiple Ryus SDN controllers. The rule-sharing allows a reduction of the controller’s overhead for processing DDoS detection and mitigation. The experimental results show that using the RSMQ mechanism can significantly detect and prevent DDoS attacks detection across multi-controller domains. It also provides early detection and mitigation of DDoS at lower controller overhead.
引用
收藏
页码:1338 / 1347
页数:9
相关论文
empty
未找到相关数据