Detection and mitigation of link flooding-based DDoS attacks on a software defined network using network function virtualisation

被引:0
|
作者
Murtuza, Shariq [1 ]
Asawa, Krishna [1 ]
机构
[1] Jaypee Inst Informat Technol, Dept Comp Sci & Engn & Informat Technol, Noida, India
关键词
software defined networks; SDNs; network function virtualisation; NFV; denial of service attacks; DDoS; virtual network functions; VNFs; VIRTUALIZATION;
D O I
10.1504/IJCNDS.2024.137056
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Software defined networks (SDNs) are emerging as the first choice for network administrators due to their agility, modularity and dynamism. Network operators can change the network topology, routes and other parameters as per their current requirement. Like traditional computer networks SDNs are also prone to various denial of service attacks (DDoS). Link flooding attacks are a class of DDoS attack that aims to choke crucial network connections and can fully detach the victim from the network. In this paper we have discussed two link flooding-based denial of service attacks, namely Coremelt and Crossfire, in the context of SDN along with the possible mitigation. These attacks are aimed at disconnecting services from the network. We demonstrate the usage of network function virtualisation along with SDN features to mitigate these attacks by recreating replicas of the services under attack and connecting them to the network.
引用
收藏
页码:202 / 226
页数:26
相关论文
共 50 条
  • [41] Simulation of DOS Attacks Mitigation in Software Defined Network Architecture using Load Balancing Algorithm
    Wijaya, Chandra
    Wiryasaputra, Rita
    Wang, I-Jan
    Wu, Ruey-Chyi
    Yang, Chao-Tung
    MOBILE NETWORKS & APPLICATIONS, 2024, 29 (03): : 961 - 980
  • [42] Detection DDoS Attacks Based on Neural-Network Using Apache Spark
    Hsieh, Chang-Jung
    Chan, Ting-Yuan
    PROCEEDINGS OF 2016 INTERNATIONAL CONFERENCE ON APPLIED SYSTEM INNOVATION (ICASI), 2016,
  • [43] Low-Rate DDoS Attack Detection Based on Factorization Machine in Software Defined Network
    Wu Zhijun
    Xu Qing
    Wang Jingjie
    Yue Meng
    Liu Liang
    IEEE ACCESS, 2020, 8 : 17404 - 17418
  • [44] Detection and Mitigation of ARP Storm Attacks using Software Defined Networks
    Numan, Munther
    Hashim, Fazirulhisyam
    Latiff, Nurul Adilah Abdul
    2017 IEEE 13TH MALAYSIA INTERNATIONAL CONFERENCE ON COMMUNICATIONS (MICC), 2017, : 181 - 186
  • [45] Distributed denial of service (DDoS) attack mitigation in software defined network (SDN)-based cloud computing environment
    Bhushan, Kriti
    Gupta, B. B.
    JOURNAL OF AMBIENT INTELLIGENCE AND HUMANIZED COMPUTING, 2019, 10 (05) : 1985 - 1997
  • [46] Distributed denial of service (DDoS) attack mitigation in software defined network (SDN)-based cloud computing environment
    Kriti Bhushan
    B. B. Gupta
    Journal of Ambient Intelligence and Humanized Computing, 2019, 10 : 1985 - 1997
  • [47] Detection and Classification of DDoS Flooding Attacks on Software-Defined Networks: A Case Study for the Application of Machine Learning
    Sangodoyin, Abimbola O.
    Akinsolu, Mobayode O.
    Pillai, Prashant
    Grout, Vic
    IEEE ACCESS, 2021, 9 (09): : 122495 - 122508
  • [48] Combating DDoS Attack with Dynamic Detection of Anomalous Hosts in Software Defined Network
    Zhao, Rudong
    Wei, Songjie
    Ren, Milin
    2017 INTERNATIONAL CONFERENCE ON CURRENT TRENDS IN COMPUTER, ELECTRICAL, ELECTRONICS AND COMMUNICATION (CTCEEC), 2017, : 37 - 42
  • [49] SDN-Assisted Network-Based Mitigation of Slow DDoS Attacks
    Lukaseder, Thomas
    Maile, Lisa
    Erb, Benjamin
    Kargl, Frank
    SECURITY AND PRIVACY IN COMMUNICATION NETWORKS, SECURECOMM 2018, PT II, 2018, 255 : 102 - 121
  • [50] Mitigating DDoS Attacks Using OpenFlow-Based Software Defined Networking
    Jonker, Mattijs
    Sperotto, Anna
    INTELLIGENT MECHANISMS FOR NETWORK CONFIGURATION AND SECURITY, 2015, 9122 : 129 - 133