Detection and Prevention of DoS attacks in Software-Defined Cloud Networks

被引:0
|
作者
Rengaraju, Perumalraja [1 ]
Ramanan, Raja, V [1 ]
Lung, Chung-Horng [2 ]
机构
[1] Velammal Coll Engn & Technol, Dept IT, Madurai, Tamil Nadu, India
[2] Carleton Univ, Dept Syst & Comp Engn, Ottawa, ON, Canada
关键词
SDN; OFP; DDoS; Firewall and IPS;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
One of the recent focuses in Cloud Computing networks is Software Defined Clouds (SDC), where the Software-Defined Networking (SDN) technology is combined with the traditional Cloud network. SDC is aimed to create an effective Cloud environment by extending the virtualization concept to all resources. In that, the control plane is decoupled from the data plane in a network device and controlled by the centralized controller using the OpenFlow Protocol (OFP). As the centralized controller performs all control functions in a network, it requires strong security. Already, Cloud Computing faces many security challenges. Most vulnerable attacks in SDC is Denial-of-Service (DoS) and Distributed DoS (DDoS) attacks. To overcome the DoS attacks, we propose a distributed Firewall with Intrusion Prevention System (IPS) for SDC. The proposed distributed security mechanism is investigated for two DoS attacks, ICMP and SYN flooding attacks for different network scenarios. From the simulation results and discussion, we showed that the distributed Firewall with IPS security detects and prevents the DoS attack effectively.
引用
收藏
页码:217 / 223
页数:7
相关论文
共 50 条
  • [31] Flexible Network-based Intrusion Detection and Prevention System on Software-defined Networks
    An Le
    Phuong Dinh
    Hoa Le
    Ngoc Cuong Tran
    [J]. 2015 INTERNATIONAL CONFERENCE ON ADVANCED COMPUTING AND APPLICATIONS (ACOMP), 2015, : 106 - 111
  • [32] Performance Analysis of Software-Defined Networks to Mitigate Private VLAN Attacks
    Alvarez, David
    Nuno, Pelayo
    Gonzalez, Carlos T.
    Bulnes, Francisco G.
    Granda, Juan C.
    Garcia-Carrillo, Dan
    [J]. SENSORS, 2023, 23 (04)
  • [33] Attacking Network Isolation in Software-Defined Networks: New attacks and Countermeasures
    Xiao, Rui
    Zhu, Hui
    Song, Chao
    Liu, Ximeng
    Dong, Jian
    Li, Hui
    [J]. 2018 27TH INTERNATIONAL CONFERENCE ON COMPUTER COMMUNICATION AND NETWORKS (ICCCN), 2018,
  • [34] DoSGuard: Mitigating Denial-of-Service Attacks in Software-Defined Networks
    Li, Jishuai
    Tu, Tengfei
    Li, Yongsheng
    Qin, Sujuan
    Shi, Yijie
    Wen, Qiaoyan
    [J]. SENSORS, 2022, 22 (03)
  • [35] Collaborative detection and mitigation of DDoS in software-defined networks
    Omer Elsier Tayfour
    Muhammad Nadzir Marsono
    [J]. The Journal of Supercomputing, 2021, 77 : 13166 - 13190
  • [36] Preventing Timing Side-Channel Attacks in Software-Defined Networks
    Shoaib, Faizan
    Chow, Yang-Wai
    Vlahu-Gjorgievska, Elena
    [J]. 2021 IEEE ASIA-PACIFIC CONFERENCE ON COMPUTER SCIENCE AND DATA ENGINEERING (CSDE), 2021,
  • [37] Distributed Denial of Service (DDoS) Attacks in Software-defined Networks (SDN)
    Chahal, Jasmeen Kaur
    Kaur, Puninder
    Sharma, Avinash
    [J]. 2021 5TH INTERNATIONAL CONFERENCE ON ELECTRICAL, ELECTRONICS, COMMUNICATION, COMPUTER TECHNOLOGIES AND OPTIMIZATION TECHNIQUES (ICEECCOT), 2021, : 291 - 295
  • [38] Protecting Software-Defined Enterprise Networks from Packet Injection Attacks
    ul Huque, Tanvir
    den Hartog, Frank
    [J]. PROCEEDINGS OF THE IEEE 46TH CONFERENCE ON LOCAL COMPUTER NETWORKS (LCN 2021), 2021, : 287 - 292
  • [39] Poisoning Network Visibility in Software-Defined Networks: New Attacks and Countermeasures
    Hong, Sungmin
    Xu, Lei
    Wang, Haopei
    Gu, Guofei
    [J]. 22ND ANNUAL NETWORK AND DISTRIBUTED SYSTEM SECURITY SYMPOSIUM (NDSS 2015), 2015,
  • [40] Automated Controller Placement for Software-Defined Networks to Resist DDoS Attacks
    Haque, Muhammad Reazul
    Tan, Saw Chin
    Yusoff, Zulfadzli
    Nisar, Kashif
    Kwang, Lee Ching
    Kaspin, Rizaludin
    Chowdhry, Bhawani Shankar
    Buyya, Rajkumar
    Majumder, Satya Prasad
    Gupta, Manoj
    Memon, Shuaib
    [J]. CMC-COMPUTERS MATERIALS & CONTINUA, 2021, 68 (03): : 3147 - 3165