DDoS Attack Detection in Software Defined Networks by Various Metrics

被引:0
|
作者
Saadallah N.R. [1 ]
Al-Talib S.A.A. [1 ]
Malallah F.L. [1 ]
机构
[1] Computer and Information Department, College of Electronics Engineering, Ninevah University, Mosul
关键词
centralized control networks; controller plane; data plane; detection software; distributed denial of service attack; Software-defined networks;
D O I
10.2174/1872212115666210714143008
中图分类号
学科分类号
摘要
Background: Software-Defined Networks (SDNs) are a new architectural approach to smart centralized control networks that were introduced alongside Open Flow in 2011. SDNs are programmed using software applications that help operators manage the network in a fully consistent and comprehensive way. Centralization in these networks is considered a weakness, especially if it is accessed by a Distributed Denial of Service (DDoS) attack-which is the process of uploading huge floods of various sorts of traffic to a website, from multiple sources, in order to make it and its services inaccessible to users. Methods: In our current research, we will build an SDN through a Mininet virtualization simulator, and by using Python. A DDoS attack will be detected depending on two facts: firstly, Traffic State-which normally sees traffic packets sent at around 30 packets per second (DDoS packets are about 250 packets per second and will completely disrupt the network if the attack persists). Secondly, the number of IP Hits. The method used in the research appears very effective in detecting DDoS, according to the results we have achieved. Results: The proposed performance of the system: The Precision (PREC), Recall (REC), and F-Measure (F1) metrics have been used for assessment. Conclusion: The novelty of the current research lies in the detection of penetration in SDN networks, by calculating the number of hits by the hacker's device and the number of times they enter the main device in the network, in addition to the large amount of data sent by the hacker's device to the network. The experimental results are promising as compared with the datasets like CIC-DoS, CI-CIDS2017, CSE-CIC-IDS2018, and customized dataset. The results ranged between 90% and 96%. © 2022 Bentham Science Publishers.
引用
收藏
相关论文
共 50 条
  • [21] Collaborative detection and mitigation of DDoS in software-defined networks
    Omer Elsier Tayfour
    Muhammad Nadzir Marsono
    The Journal of Supercomputing, 2021, 77 : 13166 - 13190
  • [22] Collaborative detection and mitigation of DDoS in software-defined networks
    Tayfour, Omer Elsier
    Marsono, Muhammad Nadzir
    JOURNAL OF SUPERCOMPUTING, 2021, 77 (11): : 13166 - 13190
  • [23] Examining the Security of DDoS Detection Systems in Software Defined Networks
    Abusnaina, Ahmed
    Nyang, DaeHun
    Yuksel, Murat
    Mohaisen, Aziz
    CONEXT'19 COMPANION: PROCEEDINGS OF THE 15TH INTERNATIONAL CONFERENCE ON EMERGING NETWORKING EXPERIMENTS AND TECHNOLOGIES, 2019, : 49 - 50
  • [24] Combating DDoS Attack with Dynamic Detection of Anomalous Hosts in Software Defined Network
    Zhao, Rudong
    Wei, Songjie
    Ren, Milin
    2017 INTERNATIONAL CONFERENCE ON CURRENT TRENDS IN COMPUTER, ELECTRICAL, ELECTRONICS AND COMMUNICATION (CTCEEC), 2017, : 37 - 42
  • [25] Research on application of DDos attack detection technology based on software defined network
    Jing, Guo
    Acta Technica CSAV (Ceskoslovensk Akademie Ved), 2017, 62 (01): : 489 - 498
  • [26] An efficient centralized DDoS attack detection approach for Software Defined Internet of Things
    Pinkey Chauhan
    Mithilesh Atulkar
    The Journal of Supercomputing, 2023, 79 : 10386 - 10422
  • [27] A DDoS Attack Detection and Mitigation With Software-Defined Internet of Things Framework
    Yin, Da
    Zhang, Lianming
    Yang, Kun
    IEEE ACCESS, 2018, 6 : 24694 - 24705
  • [28] Improvement in DDoS attack detection in software defined network using ML algorithm
    Chattopadhyay, Saumitra
    Sahoo, Ashok Kumar
    Jasola, Sanjay
    JOURNAL OF DISCRETE MATHEMATICAL SCIENCES & CRYPTOGRAPHY, 2023, 26 (07): : 2025 - 2044
  • [29] An efficient centralized DDoS attack detection approach for Software Defined Internet of Things
    Chauhan, Pinkey
    Atulkar, Mithilesh
    JOURNAL OF SUPERCOMPUTING, 2023, 79 (09): : 10386 - 10422
  • [30] Emerging DDoS attack detection and mitigation strategies in software-defined networks: Taxonomy, challenges and future directions
    Valdovinos, Ismael Amezcua
    Perez-Diaz, Jesus Arturo
    Choo, Kim-Kwang Raymond
    Botero, Juan Felipe
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2021, 187