Federated Learning-Based Solution for DDoS Detection in SDN

被引:0
|
作者
Mateus, Jovita [1 ]
Zodi, Guy-Alain Lusilao [2 ]
Bagula, Antoine [1 ]
机构
[1] UWC, Dept Comp Sci, Cape Town, South Africa
[2] NUST, Dept Comp Sci, Windhoek, Namibia
关键词
DDoS; Federated Learning; Machine Learning; Deep Learning; Software Defined Networking; Security; SOFTWARE-DEFINED NETWORKING; ATTACKS;
D O I
10.1109/CNC59896.2024.10556115
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
One major threat to Software Defined Network (SDN) environments and other computing systems is Distributed Denial of Service (DDoS) attacks. For the longest time, conventional Machine Learning (ML) techniques have been used for DDoS detection, but they have limitations because of their centralised training requirements, which can lead to excessive bandwidth utilization, increased latency, and server overhead. Moreover, end-user data privacy and confidentiality are jeopardised by transferring the data to a central server. We present Federated Learning (FL) as a way to counteract DDoS attacks in SDN. FL reduces the need for centralised servers and lessens the limitations of conventional ML techniques by enabling decentralised training of ML models on distributed devices. FL lowers the possibility of data breaches and protects the privacy of sensitive data by training models locally on devices. We used FL to train three classifiers: Deep Neural Networks (DNN), Convolutional Neural Networks (CNN), and Long Short-Term Memory (LSTM) to classify three classes of DDoS attacks, namely: UDP Flood, TCP SYN, and DNS Flood. The results demonstrate how well our FL models perform and how they can replace centralized and conventional methods for identifying DDoS attacks in SDN environments while protecting the privacy of users.
引用
收藏
页码:875 / 880
页数:6
相关论文
共 50 条
  • [41] Parameterizing poisoning attacks in federated learning-based intrusion detection
    Merzouk, Mohamed Amine
    Cuppens, Frederic
    Boulahia-Cuppens, Nora
    Yaich, Reda
    18TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY & SECURITY, ARES 2023, 2023,
  • [42] Federated learning-based intrusion detection system for Internet of Things
    Hamdi, Najet
    INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2023, 22 (06) : 1937 - 1948
  • [43] FELIDS: Federated learning-based intrusion detection system for Internet of
    Friha, Othmane
    Ferrag, Mohamed Amine
    Shu, Lei
    Maglaras, Leandros
    Choo, Kim-Kwang Raymond
    Nafaa, Mehdi
    JOURNAL OF PARALLEL AND DISTRIBUTED COMPUTING, 2022, 165 : 17 - 31
  • [44] Examining the Robustness of Learning-Based DDoS Detection in Software Defined Networks
    Abusnaina, Ahmed
    Khormali, Aminollah
    Nyang, DaeHun
    Yuksel, Murat
    Mohaisen, Aziz
    2019 IEEE CONFERENCE ON DEPENDABLE AND SECURE COMPUTING (DSC), 2019, : 17 - 24
  • [45] DDoS Attacks Detection and Mitigation in SDN using Machine Learning
    Rahman, Obaid
    Quraishi, Mohammad Ali Gauhar
    Lung, Chung-Horng
    2019 IEEE WORLD CONGRESS ON SERVICES (IEEE SERVICES 2019), 2019, : 184 - 189
  • [46] Predictive machine learning-based integrated approach for DDoS detection and prevention
    Kebede, Solomon Damena
    Tiwari, Basant
    Tiwari, Vivek
    Chandravanshi, Kamlesh
    MULTIMEDIA TOOLS AND APPLICATIONS, 2022, 81 (03) : 4185 - 4211
  • [47] DDoS Attack Detection and Mitigation in SDN using Machine Learning
    Khashab, Fatima
    Moubarak, Joanna
    Feghali, Antoine
    Bassil, Carole
    PROCEEDINGS OF THE 2021 IEEE 7TH INTERNATIONAL CONFERENCE ON NETWORK SOFTWARIZATION (NETSOFT 2021): ACCELERATING NETWORK SOFTWARIZATION IN THE COGNITIVE AGE, 2021, : 395 - 401
  • [48] Synchronizing DDoS detection and mitigation based graph learning with programmable data plane, SDN
    Ma, Jie
    Su, Wei
    Li, Yikun
    Peng, Yihua
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2024, 154 : 206 - 218
  • [49] Detection and mitigation of DDoS in SDN
    Pande, Bhavika
    Bhagat, Gargi
    Priya, Shanu
    Agrawal, Himanshu
    2018 ELEVENTH INTERNATIONAL CONFERENCE ON CONTEMPORARY COMPUTING (IC3), 2018, : 371 - 373
  • [50] SDN traffic anomaly detection method based on convolutional autoencoder and federated learning
    Wang, ZiXuan
    Wang, Pan
    Sun, ZhiXin
    2022 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM 2022), 2022, : 4154 - 4160