SECO: SDN sEcure COntroller Algorithm for Detecting and Defending Denial of Service Attacks

被引:0
|
作者
Wang, Song [1 ]
Chavez, Karina Gomez [1 ]
Kandeepan, Sithamparanathan [1 ]
机构
[1] RMIT Univ, Sch Engn, Melbourne, Vic 3000, Australia
关键词
Software Defined Network; Denial of Service; OpenFlow; Security; Mininet;
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Software Defined Network (SDN) brings additional flexibility to the traditional network allowing the implementation of intelligent information processing. SDN introduces a new architecture, where the controller acts as the brain of the network controlling several tasks such as routing, load balancing and providing the required quality of service (QoS). However, having a centralized controller makes the network vulnerable in terms of security. This paper introduces SDN sEcure COntroller (SECO) a novel and simple detect and defense algorithm, running in the controller, for improving SDN security features under Denial of Service (DoS) attacks. The network performance during attack is tested with and without the SECO algorithm. In this paper we show by means of simulations that the DoS attacks can degrade the controller's performance and the proposed algorithm could significantly reduce the impact of such DoS attacks.
引用
收藏
页数:6
相关论文
共 50 条
  • [1] SECOD: SDN sEcure COntrol and Data Plane Algorithm for Detecting and Defending against DoS Attacks
    Wang, Song
    Chandrasekharan, Sathyanarayanan
    Gomez, Karina
    Kandeepan, Sithamparanathan
    Al-Hourani, Akram
    Asghar, Muhammad Rizwan
    Russello, Giovanni
    Zanna, Paul
    NOMS 2018 - 2018 IEEE/IFIP NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM, 2018,
  • [2] Detecting and Defending Against Controller-to-Switch Loop Attacks in SDN
    Zhang Y.
    Jiang Y.
    Zheng J.
    Pang C.-H.
    Li Q.
    Tien Tzu Hsueh Pao/Acta Electronica Sinica, 2019, 47 (05): : 1146 - 1151
  • [3] Defending against denial of service attacks using secure name resolution.
    Dewan, P
    Dasgupta, P
    Karamcheti, V
    SAM'03: PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON SECURITY AND MANAGEMENT, VOLS 1 AND 2, 2003, : 675 - 681
  • [4] Defending networks against denial of service attacks
    Gelenbe, E
    Gellman, M
    Loukas, G
    UNMANNED/UNATTENDED SENSORS AND SENSOR NETWORKS, 2004, 5611 : 233 - 243
  • [5] Defending against denial of service attacks in scout
    Spatscheck, O
    Peterson, LL
    USENIX ASSOCIATION PROCEEDINGS OF THE THIRD SYMPOSIUM ON OPERATING SYSTEMS DESIGN AND IMPLEMENTATION (OSDI '99), 1999, : 59 - 72
  • [6] Defending saturation attacks on SDN controller: A confusable instance analysis-based algorithm
    Ran, Longyan
    Cui, Yunhe
    Guo, Chun
    Qian, Qing
    Shen, Guowei
    Xing, Huanlai
    COMPUTER NETWORKS, 2022, 213
  • [7] Detecting Denial of Service Attacks in the Cloud
    Kumar, Raneel
    Lal, Sunil Pranit
    Sharma, Alok
    2016 IEEE 14TH INTL CONF ON DEPENDABLE, AUTONOMIC AND SECURE COMPUTING, 14TH INTL CONF ON PERVASIVE INTELLIGENCE AND COMPUTING, 2ND INTL CONF ON BIG DATA INTELLIGENCE AND COMPUTING AND CYBER SCIENCE AND TECHNOLOGY CONGRESS (DASC/PICOM/DATACOM/CYBERSC, 2016, : 309 - 316
  • [8] Detecting Denial of Service Attacks in Tor
    Danner, Norman
    Krizanc, Danny
    Liberatore, Marc
    FINANCIAL CRYPTOGRAPHY AND DATA SECURITY, 2009, 5628 : 273 - 284
  • [9] A Novel Algorithm for Defending Path-Based Denial of Service Attacks in Sensor Networks
    Saifan, Ramzi
    Al-Jarrah, Omar
    INTERNATIONAL JOURNAL OF DISTRIBUTED SENSOR NETWORKS, 2010,
  • [10] Denial-of-Service Attacks in OpenFlow SDN Networks
    Kandoi, Rajat
    Antikainen, Markku
    PROCEEDINGS OF THE 2015 IFIP/IEEE INTERNATIONAL SYMPOSIUM ON INTEGRATED NETWORK MANAGEMENT (IM), 2015, : 1322 - 1326