Detection and Prevention of DoS attacks in Software-Defined Cloud Networks

被引:0
|
作者
Rengaraju, Perumalraja [1 ]
Ramanan, Raja, V [1 ]
Lung, Chung-Horng [2 ]
机构
[1] Velammal Coll Engn & Technol, Dept IT, Madurai, Tamil Nadu, India
[2] Carleton Univ, Dept Syst & Comp Engn, Ottawa, ON, Canada
关键词
SDN; OFP; DDoS; Firewall and IPS;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
One of the recent focuses in Cloud Computing networks is Software Defined Clouds (SDC), where the Software-Defined Networking (SDN) technology is combined with the traditional Cloud network. SDC is aimed to create an effective Cloud environment by extending the virtualization concept to all resources. In that, the control plane is decoupled from the data plane in a network device and controlled by the centralized controller using the OpenFlow Protocol (OFP). As the centralized controller performs all control functions in a network, it requires strong security. Already, Cloud Computing faces many security challenges. Most vulnerable attacks in SDC is Denial-of-Service (DoS) and Distributed DoS (DDoS) attacks. To overcome the DoS attacks, we propose a distributed Firewall with Intrusion Prevention System (IPS) for SDC. The proposed distributed security mechanism is investigated for two DoS attacks, ICMP and SYN flooding attacks for different network scenarios. From the simulation results and discussion, we showed that the distributed Firewall with IPS security detects and prevents the DoS attack effectively.
引用
收藏
页码:217 / 223
页数:7
相关论文
共 50 条
  • [1] A Software Approach for Mitigation of DoS Attacks on SDN's (Software-Defined Networks)
    Lotlikar, Trupti
    Shah, Deven
    [J]. SOFT COMPUTING IN DATA ANALYTICS, SCDA 2018, 2019, 758 : 333 - 342
  • [2] Detection and Mitigation of DoS Attacks in Software Defined Networks
    Gao, Shang
    Peng, Zhe
    Xiao, Bin
    Hu, Aiqun
    Song, Yubo
    Ren, Kui
    [J]. IEEE-ACM TRANSACTIONS ON NETWORKING, 2020, 28 (03) : 1419 - 1433
  • [3] FloodGuard: A DoS Attack Prevention Extension in Software-Defined Networks
    Wang, Haopei
    Xu, Lei
    Gu, Guofei
    [J]. 2015 45TH ANNUAL IEEE/IFIP INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS AND NETWORKS, 2015, : 239 - 250
  • [4] Hybrid Deep Learning Approach for Automatic DoS/DDoS Attacks Detection in Software-Defined Networks
    Elubeyd, Hani
    Yiltas-Kaplan, Derya
    [J]. APPLIED SCIENCES-BASEL, 2023, 13 (06):
  • [5] Topology Poisoning Attacks and Prevention in Hybrid Software-Defined Networks
    Shrivastava, Pragati
    Kataoka, Kotaro
    [J]. IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2022, 19 (01): : 510 - 523
  • [6] Detection and defense against network isolation attacks in software-defined networks
    Yu, Zhipeng
    Zhu, Hui
    Xiao, Rui
    Song, Chao
    Dong, Jian
    Li, Hui
    [J]. TRANSACTIONS ON EMERGING TELECOMMUNICATIONS TECHNOLOGIES, 2021, 32 (05)
  • [7] Denial of Service Attacks Detection in Software-Defined Wireless Sensor Networks
    Nunez Segura, Gustavo A.
    Skaperas, Sotiris
    Chorti, Arsenia
    Mamatas, Lefteris
    Margi, Cintia Borges
    [J]. 2020 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS WORKSHOPS (ICC WORKSHOPS), 2020,
  • [8] Detecting Saturation Attacks in Software-Defined Networks
    Li, Zhiyuan
    Xing, Weijia
    Xu, Dianxiang
    [J]. 2018 IEEE INTERNATIONAL CONFERENCE ON INTELLIGENCE AND SECURITY INFORMATICS (ISI), 2018, : 163 - 168
  • [9] DoS vulnerabilities and mitigation strategies in software-defined networks
    Deng, Shuhua
    Gao, Xing
    Lu, Zebin
    Li, Zhengfa
    Gao, Xieping
    [J]. JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2019, 125 : 209 - 219
  • [10] Software-Defined Networks Meet Cloud Computing
    Linthicum, David S.
    [J]. IEEE CLOUD COMPUTING, 2016, 3 (03): : 8 - 10