Entropy-based DoS Attack identification in SDN

被引:21
|
作者
Carvalho, Ranyelson N. [1 ]
Bordim, Jacir L. [1 ]
Alchieri, Eduardo A. P. [1 ]
机构
[1] Univ Brasilia UnB, Dept Comp Sci, Brasilia, DF, Brazil
关键词
OPENFLOW;
D O I
10.1109/IPDPSW.2019.00108
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Software Defined Networks (SDN) represent a new network architecture that provides central control over the network. The main innovation behind an SDN network is that it decouples the data plane from the control plane, which defines a network programmable environment. In the control plane, the controller supports the execution of services that define the control policies and distributes these rules to the data plane through a standard protocol, such as OpenFlow. Despite the numerous benefits provided by this architecture, the security of an SDN network is still a matter of concern since the aforementioned decoupling increase the attack surface in the network. In fact, Denial of Service (DoS) attacks are the ones that challenge the SDN environments in many aspects, mainly due to vulnerabilities between the control and the data plane layers. Entropy-based DoS detection method is a technique widely used in conventional network architecture. This paper proposes the use of entropy in an SDN environment, through of the OpenFlow switches statistics, to build a mechanism that monitor the network and is able to differentiate DoS traffic from the benign traffic. Experimental results show the practical feasibility of the proposed solution.
引用
收藏
页码:627 / 634
页数:8
相关论文
共 50 条
  • [1] DDoS attack detection in SDN: Enhancing entropy-based detection with machine learning
    Santos-Neto, Marcos J.
    Bordim, Jacir L.
    Alchieri, Eduardo A. P.
    Ishikawa, Edison
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2024, 36 (11):
  • [2] A hybrid entropy-based DoS attacks detection system for software defined networks (SDN): A proposed trust mechanism
    AbdelAzim, Nada M.
    Fahmy, Sherif F.
    Sobh, Mohammed Ali
    Eldin, Ayman M. Bahaa
    EGYPTIAN INFORMATICS JOURNAL, 2021, 22 (01) : 85 - 90
  • [3] An SDN based hopping multicast communication against DoS attack
    Zhao, Zheng
    Liu, Fenlin
    Gong, Daofu
    KSII TRANSACTIONS ON INTERNET AND INFORMATION SYSTEMS, 2017, 11 (04): : 2196 - 2218
  • [4] DoS Attack Detection Based on Deep Factorization Machine in SDN
    Wang J.
    Lei X.
    Jiang Q.
    Alfarraj O.
    Tolba A.
    Kim G.-J.
    Computer Systems Science and Engineering, 2023, 45 (02): : 1727 - 1742
  • [5] Botnet Attack Identification Based on SDN
    Dimiter, Avresky
    Dobrev, Dobrin
    CYBER SECURITY, CRYPTOLOGY, AND MACHINE LEARNING, 2022, 13301 : 162 - 169
  • [6] DDoS attack identification based on SDN
    Dobrin, Dobrev
    Dimiter, Avresky
    2021 IEEE 20TH INTERNATIONAL SYMPOSIUM ON NETWORK COMPUTING AND APPLICATIONS (NCA), 2021,
  • [7] JESS: Joint Entropy-Based DDoS Defense Scheme in SDN
    Kalkan, Kubra
    Altay, Levent
    Gur, Gurkan
    Alagoz, Fatih
    IEEE JOURNAL ON SELECTED AREAS IN COMMUNICATIONS, 2018, 36 (10) : 2358 - 2372
  • [8] Rotation Entropy-Based Vortex Identification
    Wang, Huai-Hui
    Li, Si-Kun
    Zeng, Liang
    2014 INTERNATIONAL CONFERENCE ON VIRTUAL REALITY AND VISUALIZATION (ICVRV2014), 2014, : 302 - 307
  • [9] Dynamic entropy based DoS attack detection method
    Zhu Jian-Qi
    Fu Feng
    Yin Ke-xin
    Liu Yan-Heng
    COMPUTERS & ELECTRICAL ENGINEERING, 2013, 39 (07) : 2243 - 2251
  • [10] Web Attack Detection using Entropy-based Analysis
    Threepak, T.
    Watcharapupong, A.
    2014 INTERNATIONAL CONFERENCE ON INFORMATION NETWORKING (ICOIN 2014), 2014, : 244 - 247