SDN-Based Intrusion Detection System for Early Detection and Mitigation of DDoS Attacks

被引:66
|
作者
Manso, Pedro [1 ]
Moura, Jose [2 ]
Serrao, Carlos [3 ]
机构
[1] ISCTE Inst Univ Lisboa, Dept Informat Sci & Technol, Sch Technol & Architecture, P-1649026 Lisbon, Portugal
[2] ISCTE Inst Univ Lisboa, IT, P-1649026 Lisbon, Portugal
[3] ISCTE Inst Univ Lisboa, Informat Sci Technol & Architecture Res Ctr ISTAR, P-1649026 Lisbon, Portugal
关键词
SDN; DDoS; IDS; mirroring; OpenFlow; botnet;
D O I
10.3390/info10030106
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The current paper addresses relevant network security vulnerabilities introduced by network devices within the emerging paradigm of Internet of Things (IoT) as well as the urgent need to mitigate the negative effects of some types of Distributed Denial of Service (DDoS) attacks that try to explore those security weaknesses. We design and implement a Software-Defined Intrusion Detection System (IDS) that reactively impairs the attacks at its origin, ensuring the "normal operation" of the network infrastructure. Our proposal includes an IDS that automatically detects several DDoS attacks, and then as an attack is detected, it notifies a Software Defined Networking (SDN) controller. The current proposal also downloads some convenient traffic forwarding decisions from the SDN controller to network devices. The evaluation results suggest that our proposal timely detects several types of cyber-attacks based on DDoS, mitigates their negative impacts on the network performance, and ensures the correct data delivery of normal traffic. Our work sheds light on the programming relevance over an abstracted view of the network infrastructure to timely detect a Botnet exploitation, mitigate malicious traffic at its source, and protect benign traffic.
引用
收藏
页数:17
相关论文
共 50 条
  • [1] SDN-based detection and mitigation of DDoS attacks on smart homes
    Garba, Usman Haruna
    Toosi, Adel N.
    Pasha, Muhammad Fermi
    Khan, Suleman
    [J]. COMPUTER COMMUNICATIONS, 2024, 221 : 29 - 41
  • [2] SDN-Based Network Intrusion Detection as DDoS defense system for Virtualization Environment
    Usman, Saifudin
    Winarno, Idris
    Sudarsono, Amang
    [J]. EMITTER-INTERNATIONAL JOURNAL OF ENGINEERING TECHNOLOGY, 2021, 9 (02) : 252 - 267
  • [3] Detection of DDoS attacks in SDN-based VANET using optimized TabNet
    Setitra, Mohamed Ali
    Fan, Mingyu
    [J]. COMPUTER STANDARDS & INTERFACES, 2024, 90
  • [4] DNS Amplification Based DDoS Attacks in SDN Environment: Detection and Mitigation
    Gupta, Vishal
    Kochar, Amrit
    Saharan, Shail
    Kulshrestha, Rakhee
    [J]. 2019 IEEE 4TH INTERNATIONAL CONFERENCE ON COMPUTER AND COMMUNICATION SYSTEMS (ICCCS 2019), 2019, : 473 - 478
  • [5] Detection and mitigation of attacks in SDN-based IoT network using SVM
    Mishra, Shailendra
    [J]. INTERNATIONAL JOURNAL OF COMPUTER APPLICATIONS IN TECHNOLOGY, 2021, 65 (03) : 270 - 281
  • [6] Detecting DDoS Attacks through AI driven SDN Intrusion Detection System
    Salatino, Francesco
    Spina, Mattia Giovanni
    Tropea, Mauro
    De Rango, Floriano
    [J]. 2024 IEEE 21ST CONSUMER COMMUNICATIONS & NETWORKING CONFERENCE, CCNC, 2024, : 990 - 993
  • [7] SDN-Defend: A Lightweight Online Attack Detection and Mitigation System for DDoS Attacks in SDN
    Wang, Jin
    Wang, Liping
    [J]. SENSORS, 2022, 22 (21)
  • [8] DDoS Attacks Detection and Mitigation in SDN using Machine Learning
    Rahman, Obaid
    Quraishi, Mohammad Ali Gauhar
    Lung, Chung-Horng
    [J]. 2019 IEEE WORLD CONGRESS ON SERVICES (IEEE SERVICES 2019), 2019, : 184 - 189
  • [9] A DDoS Detection and Mitigation System Framework Based on Spark and SDN
    Yan, Qiao
    Huang, Wenyao
    [J]. SMART COMPUTING AND COMMUNICATION, SMARTCOM 2016, 2017, 10135 : 350 - 358
  • [10] Detection and mitigation of DDoS attacks based on multi-dimensional characteristics in SDN
    Kun Wang
    Yu Fu
    Xueyuan Duan
    Taotao Liu
    [J]. Scientific Reports, 14 (1)