Detection and mitigation of link flooding-based DDoS attacks on a software defined network using network function virtualisation

被引:0
|
作者
Murtuza, Shariq [1 ]
Asawa, Krishna [1 ]
机构
[1] Jaypee Inst Informat Technol, Dept Comp Sci & Engn & Informat Technol, Noida, India
关键词
software defined networks; SDNs; network function virtualisation; NFV; denial of service attacks; DDoS; virtual network functions; VNFs; VIRTUALIZATION;
D O I
10.1504/IJCNDS.2024.137056
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Software defined networks (SDNs) are emerging as the first choice for network administrators due to their agility, modularity and dynamism. Network operators can change the network topology, routes and other parameters as per their current requirement. Like traditional computer networks SDNs are also prone to various denial of service attacks (DDoS). Link flooding attacks are a class of DDoS attack that aims to choke crucial network connections and can fully detach the victim from the network. In this paper we have discussed two link flooding-based denial of service attacks, namely Coremelt and Crossfire, in the context of SDN along with the possible mitigation. These attacks are aimed at disconnecting services from the network. We demonstrate the usage of network function virtualisation along with SDN features to mitigate these attacks by recreating replicas of the services under attack and connecting them to the network.
引用
收藏
页码:202 / 226
页数:26
相关论文
共 50 条
  • [31] A Complete Detection and Mitigation Framework to Protect a Network from DDoS Attacks
    Baishya, Ram Charan
    Bhattacharyya, D. K.
    IETE JOURNAL OF RESEARCH, 2022, 68 (01) : 315 - 332
  • [32] Detection and mitigation of few control plane attacks in software defined network environments using deep learning algorithm
    Kumar, M. Anand
    Onyema, Edeh Michael
    Sundaravadivazhagan, B.
    Gupta, Manish
    Shankar, Achyut
    Gude, Venkataramaiah
    Yamsani, Nagendar
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2024, 36 (26):
  • [33] Special Issue on Software Defined Networks and Infrastructures, Network Function Virtualisation, Autonomous Systems and Network Management
    Biswas, Amitava
    Liu, Chen
    Monga, Inder
    Basu, Kashinath
    Bredel, Michael
    INTERNATIONAL JOURNAL OF COMMUNICATION NETWORKS AND DISTRIBUTED SYSTEMS, 2016, 17 (03) : 203 - 205
  • [34] Detection and Mitigation of ICMP-based DDoS in Software Defined Networks
    Shehabat, Marah M.
    Shurman, Mohammad M.
    2024 15TH INTERNATIONAL CONFERENCE ON INFORMATION AND COMMUNICATION SYSTEMS, ICICS 2024, 2024,
  • [35] SatShield: In-Network Mitigation of Link Flooding Attacks for LEO Constellation Networks
    Jiang, Wei
    Jiang, Hao
    Xie, Yulai
    Wu, Jing
    He, Xiaofan
    Li, Hao
    Zhou, Pan
    IEEE INTERNET OF THINGS JOURNAL, 2024, 11 (16): : 27340 - 27355
  • [36] Collaborative Detection and Mitigation of Distributed Denial-of-Service Attacks on Software-Defined Network
    Tayfour, Omer Elsier
    Marsono, Muhammad Nadzir
    MOBILE NETWORKS & APPLICATIONS, 2020, 25 (04): : 1338 - 1347
  • [37] Collaborative Detection and Mitigation of Distributed Denial-of-Service Attacks on Software-Defined Network
    Omer Elsier Tayfour
    Muhammad Nadzir Marsono
    Mobile Networks and Applications, 2020, 25 : 1338 - 1347
  • [38] Sentinel: Defense Mechanism against DDoS Flooding Attack in Software Defined Vehicular Network
    de Biasi, Gabriel
    Vieira, Luiz F. M.
    Loureiro, Antonio A. F.
    2018 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS (ICC), 2018,
  • [39] A New Machine Learning-based Collaborative DDoS Mitigation Mechanism in Software-Defined Network
    Mohammed, Saif Saad
    Hussain, Rasheed
    Senko, Oleg
    Bimaganbetov, Bagdat
    Lee, JooYoung
    Hussain, Fatima
    Kerrache, Chaker Abdelaziz
    Barka, Ezedin
    Bhuiyan, Md Zakirul Alam
    2018 14TH INTERNATIONAL CONFERENCE ON WIRELESS AND MOBILE COMPUTING, NETWORKING AND COMMUNICATIONS (WIMOB 2018), 2018,
  • [40] Deep Reinforcement Learning based Smart Mitigation of DDoS Flooding in Software-Defined Networks
    Liu, Yandong
    Dong, Mianxiong
    Otat, Kaoru
    Li, Jianhua
    Wu, Jun
    2018 IEEE 23RD INTERNATIONAL WORKSHOP ON COMPUTER AIDED MODELING AND DESIGN OF COMMUNICATION LINKS AND NETWORKS (CAMAD), 2018, : 80 - 85