Formulating and analysis of traffic flow to secure software-defined network (SDN) using recursive network (RN) learning method

被引:0
|
作者
Ram, Anil [1 ]
Chakraborty, Swarnendu Kumar [1 ]
Banerjee, Aiswarrya [1 ]
Mahato, Ganesh Kumar [1 ]
机构
[1] Natl Inst Technol Arunachal Pradesh, Dept Comp Sci & Engn, Jote 791113, Arunachal Prade, India
来源
JOURNAL OF SUPERCOMPUTING | 2025年 / 81卷 / 05期
关键词
SDN; RN learning; Traffic flow monitoring; Reinforcement learning method; Security; Cyber attack detection;
D O I
10.1007/s11227-025-07137-6
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
This work proposes a new solution for monitoring traffic flow (TFM) in the context of software-defined network (SDN) systems, particularly focusing on the detection of cyberattacks like DDoS. The solution is based on a Recursive Network (RN) design which enables higher accuracy in an ensemble of anomaly detection, which ensures complete SDN data plane protection even during the conditions of attack. The goal of this solution is to retain the highest possible network forwarding efficiency and avoid network congestion during cyberthreats. This approach mitigates overwhelming DDoS attack attempts characteristic to SDNs because of their centralized and ever-changing design. More conventional ways of detection tend to be blind to such attacks-this is why their detection becomes detection innovative. Gradually checking the traffic flow through the RN structure allows for more precise targeting of abnormal patterns often associated with misconduct behaviors. A key construct for this methodology is the implementation of a learned policy to control dynamic transit flow. The policy is aimed at optimizing the collection of flow data at points of data acquisition in order to provide prompt assessment of superfluous conditions, and therefore a prompt assessment to possible threats. The derived flow matching parameters respond dynamically to formed traffic patterns, and as a result the system gains additional abilities to avert cyberattacks. Comparative evaluations demonstrate the efficiency of the proposed model, with performance improvements ranging from 15.29 to 48.13% over existing methods, such as FMS, MMOS, DATA, QDATA, and DEEP-MC. This showcases the proposed method's superiority in enhancing cyberattack detection within SDN environments. By preventing network degradation during DDoS attacks and other anomalies, this solution ensures the integrity and availability of the SDN's data plane, contributing to the protection of critical network infrastructure.
引用
收藏
页数:42
相关论文
共 50 条
  • [21] Performance evaluation of Software-Defined Network (SDN) controllers using Dijkstra's algorithm
    Zhang, Yinjun
    Chen, Mengji
    WIRELESS NETWORKS, 2022, 28 (8) : 3787 - 3800
  • [22] Performance evaluation of Software-Defined Network (SDN) controllers using Dijkstra’s algorithm
    Yinjun Zhang
    Mengji Chen
    Wireless Networks, 2022, 28 : 3787 - 3800
  • [23] SPONGE: Software-Defined Traffic Engineering to Absorb Influx of Network Traffic
    Henry, Benoit
    Chowdhury, Shihabur Rahman
    Lahmadi, Abdelkader
    Azais, Romain
    Francois, Jerome
    Boutaba, Raouf
    PROCEEDINGS OF THE IEEE LCN: 2019 44TH ANNUAL IEEE CONFERENCE ON LOCAL COMPUTER NETWORKS (LCN 2019), 2019, : 193 - 201
  • [24] A comprehensive survey on secure software-defined network for the Internet of Things
    Mohamed, Monzir Babiker
    Alofe, Olasunkanmi Matthew
    Azad, Muhammad Ajmal
    Lallie, Harjinder Singh
    Fatema, Kaniz
    Sharif, Tahir
    TRANSACTIONS ON EMERGING TELECOMMUNICATIONS TECHNOLOGIES, 2022, 33 (01)
  • [25] A Middleware for Integrating Legacy Network Devices into Software-Defined Networking (SDN)
    Sokappadu, Bhargava
    Mungur, Avinash
    TOWARDS NEW E-INFRASTRUCTURE AND E-SERVICES FOR DEVELOPING COUNTRIES, AFRICOMM 2020, 2021, 361 : 121 - 139
  • [26] Asymmetric network information cache based on mobile traffic in software-defined network
    Hu, Liang
    Hu, Jiejun
    Fu, Tao
    Bao, Jiyang
    Wang, Feng
    ADVANCES IN MECHANICAL ENGINEERING, 2019, 11 (01)
  • [27] Energy and Congestion Awareness Traffic Scheduling in Hybrid Software-Defined Network with Flow Splitting
    Lim, C. S.
    Tan, S. C.
    Imanuel, A.
    Teh, J. S. L.
    Baderulhisham, N. Q.
    COMPUTATIONAL COLLECTIVE INTELLIGENCE, ICCCI 2023, 2023, 14162 : 621 - 633
  • [28] Application-aware Traffic Engineering in Software-Defined Network
    Jeong, Seyeon
    Lee, Doyoung
    Hyun, Jonghwan
    Li, Jian
    Hong, James Won-Ki
    2017 19TH ASIA-PACIFIC NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM (APNOMS 2017): MANAGING A WORLD OF THINGS, 2017, : 315 - 318
  • [29] On the Security of SDN: A Completed Secure and Scalable Framework Using the Software-Defined Perimeter
    Sallam, Ahmed
    Refaey, Ahmed
    Shami, Abdallah
    IEEE ACCESS, 2019, 7 : 146577 - 146587
  • [30] Adaptive Flow Admission Control in a Software-Defined Network
    Xu, Zhiguang
    2017 IEEE INTERNATIONAL CONFERENCE ON SMART CLOUD (SMARTCLOUD), 2017, : 132 - 137