A DDoS Attack Detection and Mitigation With Software-Defined Internet of Things Framework

被引:120
|
作者
Yin, Da [1 ]
Zhang, Lianming [1 ]
Yang, Kun [2 ]
机构
[1] Hunan Normal Univ, Coll Informat Sci & Engn, Changsha 410081, Hunan, Peoples R China
[2] Univ Essex, Sch Comp Sci & Elect Engn, Colchester CO4 3SQ, Essex, England
来源
IEEE ACCESS | 2018年 / 6卷
基金
中国国家自然科学基金;
关键词
Software-defined Internet of Things (SD-IoT); distributed denial of service (DDoS); attack detection; attack mitigation; cosine similarity; NETWORKING; ARCHITECTURE; EFFICIENT; SECURITY;
D O I
10.1109/ACCESS.2018.2831284
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
With the spread of Internet of Things' (IoT) applications, security has become extremely important. A recent distributed denial-of-service (DDoS) attack revealed the ubiquity of vulnerabilities in IoT, and many IoT devices unwittingly contributed to the DDoS attack. The emerging software-defined anything (SDx) paradigm provides a way to safely manage IoT devices. In this paper, we first present a general framework for software-defined Internet of Things (SD-IoT) based on the SDx paradigm. The proposed framework consists of a controller pool containing SD-IoT controllers, SD-IoT switches integrated with an IoT gateway, and IoT devices. We then propose an algorithm for detecting and mitigating DDoS attacks using the proposed SD-IoT framework, and in the proposed algorithm, the cosine similarity of the vectors of the packet-in message rate at boundary SD-IoT switch ports is used to determine whether DDoS attacks occur in the IoT. Finally, experimental results show that the proposed algorithm has good performance, and the proposed framework adapts to strengthen the security of the IoT with heterogeneous and vulnerable devices.
引用
下载
收藏
页码:24694 / 24705
页数:12
相关论文
共 50 条
  • [31] Evolution towards Smart and Software-Defined Internet of Things
    Abid, Muhammad Aneeq
    Afaqui, Naokhaiz
    Khan, Muazzam A.
    Akhtar, Muhammad Waseem
    Malik, Asad Waqar
    Munir, Arslan
    Ahmad, Jawad
    Shabir, Balawal
    AI, 2022, 3 (01) : 100 - 123
  • [32] Consensus mechanism for software-defined blockchain in internet of things
    Huang R.
    Yang X.
    Ajay P.
    Internet of Things and Cyber-Physical Systems, 2023, 3 : 52 - 60
  • [33] SOFTWARE-DEFINED INTERNET OF THINGS FOR SMART URBAN SENSING
    Liu, Jiaqiang
    Li, Yong
    Chen, Min
    Dong, Wenxia
    Jin, Depeng
    IEEE COMMUNICATIONS MAGAZINE, 2015, 53 : 55 - 63
  • [34] TENSOR-BASED SOFTWARE-DEFINED INTERNET OF THINGS
    Kuang, Liwei
    Yang, Laurence T.
    Qiu, Kai
    IEEE WIRELESS COMMUNICATIONS, 2016, 23 (05) : 84 - 89
  • [35] Mobility Analysis and Response for Software-Defined Internet of Things
    Zhang, Zhiyong
    Wang, Rui
    Cai, Xiaojun
    Jia, Zhiping
    ALGORITHMS AND ARCHITECTURES FOR PARALLEL PROCESSING, ICA3PP 2018, PT III, 2018, 11336 : 370 - 384
  • [36] A System Architecture for Software-Defined Industrial Internet of Things
    Hu, Peng
    2015 IEEE INTERNATIONAL CONFERENCE ON UBIQUITOUS WIRELESS BROADBAND (ICUWB), 2015,
  • [37] Stacking ensemble approach for DDoS attack detection in software-defined cyber-physical systems
    Mall, Ramya
    Abhishek, Kumar
    Manimurugan, S.
    Shankar, Achyut
    Kumar, Abhay
    COMPUTERS & ELECTRICAL ENGINEERING, 2023, 107
  • [38] Securing Software-Defined Vehicular Network Architecture against DDoS attack
    Amari, Houda
    Louati, Wassef
    Khoukhi, Lyes
    Belguith, Lamia Hadrich
    PROCEEDINGS OF THE IEEE 46TH CONFERENCE ON LOCAL COMPUTER NETWORKS (LCN 2021), 2021, : 653 - 656
  • [39] DDoS attack protection in the era of cloud computing and Software-Defined Networking
    Wang, Bing
    Zheng, Yao
    Lou, Wenjing
    Hou, Y. Thomas
    COMPUTER NETWORKS, 2015, 81 : 308 - 319
  • [40] DDoS Attack Protection in the Era of Cloud Computing and Software-Defined Networking
    Wang, Bing
    Zheng, Yao
    Lou, Wenjing
    Hou, Y. Thomas
    2014 IEEE 22ND INTERNATIONAL CONFERENCE ON NETWORK PROTOCOLS (ICNP), 2014, : 624 - 629