A DDoS Attack Detection and Mitigation With Software-Defined Internet of Things Framework

被引:120
|
作者
Yin, Da [1 ]
Zhang, Lianming [1 ]
Yang, Kun [2 ]
机构
[1] Hunan Normal Univ, Coll Informat Sci & Engn, Changsha 410081, Hunan, Peoples R China
[2] Univ Essex, Sch Comp Sci & Elect Engn, Colchester CO4 3SQ, Essex, England
来源
IEEE ACCESS | 2018年 / 6卷
基金
中国国家自然科学基金;
关键词
Software-defined Internet of Things (SD-IoT); distributed denial of service (DDoS); attack detection; attack mitigation; cosine similarity; NETWORKING; ARCHITECTURE; EFFICIENT; SECURITY;
D O I
10.1109/ACCESS.2018.2831284
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
With the spread of Internet of Things' (IoT) applications, security has become extremely important. A recent distributed denial-of-service (DDoS) attack revealed the ubiquity of vulnerabilities in IoT, and many IoT devices unwittingly contributed to the DDoS attack. The emerging software-defined anything (SDx) paradigm provides a way to safely manage IoT devices. In this paper, we first present a general framework for software-defined Internet of Things (SD-IoT) based on the SDx paradigm. The proposed framework consists of a controller pool containing SD-IoT controllers, SD-IoT switches integrated with an IoT gateway, and IoT devices. We then propose an algorithm for detecting and mitigating DDoS attacks using the proposed SD-IoT framework, and in the proposed algorithm, the cosine similarity of the vectors of the packet-in message rate at boundary SD-IoT switch ports is used to determine whether DDoS attacks occur in the IoT. Finally, experimental results show that the proposed algorithm has good performance, and the proposed framework adapts to strengthen the security of the IoT with heterogeneous and vulnerable devices.
引用
下载
收藏
页码:24694 / 24705
页数:12
相关论文
共 50 条
  • [21] A Software-Defined Networking based Simulation Framework for Internet of Space Things
    Shah, Awais Aziz
    2023 IEEE 97TH VEHICULAR TECHNOLOGY CONFERENCE, VTC2023-SPRING, 2023,
  • [22] ADAM: An Adaptive DDoS Attack Mitigation Scheme in Software-Defined Cyber-Physical System
    Cai, Tianyang
    Jia, Tao
    Adepu, Sridhar
    Li, Yuqi
    Yang, Zheng
    IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2023, 19 (06) : 7802 - 7813
  • [23] A software-defined caching scheme for the Internet of Things
    Khodaparas, Sahand
    Benslimane, Abderrahim
    Yousefi, Saleh
    COMPUTER COMMUNICATIONS, 2020, 158 : 178 - 188
  • [24] Software-Defined Networking for Internet of Things: A Survey
    Bera, Samaresh
    Misra, Sudip
    Vasilakos, Athanasios V.
    IEEE INTERNET OF THINGS JOURNAL, 2017, 4 (06): : 1994 - 2008
  • [25] Improved Network Monitoring Using Software-Defined Networking for DDoS Detection and Mitigation Evaluation
    J. Ramprasath
    V. Seethalakshmi
    Wireless Personal Communications, 2021, 116 : 2743 - 2757
  • [26] Improved Network Monitoring Using Software-Defined Networking for DDoS Detection and Mitigation Evaluation
    Ramprasath, J.
    Seethalakshmi, V.
    WIRELESS PERSONAL COMMUNICATIONS, 2021, 116 (03) : 2743 - 2757
  • [27] Analyzing effective mitigation of DDoS attack with software defined networking
    Dayal, Neelam
    Srivastava, Shashank
    COMPUTERS & SECURITY, 2023, 130
  • [28] A Blockchain-based Cyber Attack Detection Scheme for Decentralized Internet of Things using Software-Defined Network
    Guha Roy, Deepsubhra
    Srirama, Satish Narayana
    SOFTWARE-PRACTICE & EXPERIENCE, 2021, 51 (07): : 1540 - 1556
  • [29] A Secure and Intelligent Software-Defined Networking Framework for Future Smart Cities to Prevent DDoS Attack
    Alshahrani, Mohammed Mujib
    Prati, Andrea
    APPLIED SCIENCES-BASEL, 2023, 13 (17):
  • [30] Towards DDoS detection mechanisms in Software-Defined Networking
    Cui, Yunhe
    Qian, Qing
    Guo, Chun
    Shen, Guowei
    Tian, Youliang
    Xing, Huanlai
    Yan, Lianshan
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2021, 190