A Cost-Effective MTD Approach for DDoS Attacks in Software-Defined Networks

被引:3
|
作者
Javadpour, Amir [1 ]
Ja'fari, Forough [2 ]
Taleb, Tarik [1 ]
Shojafar, Mohammad [3 ]
机构
[1] Univ Oulu, Fac Informat Technol & Elect Engn, FIN-90570 Oulu, Finland
[2] Sharif Univ Technol, Dept Comp Engn, Tehran, Iran
[3] Univ Surrey, Inst Commun Syst ICS, 5GIC & 6GIC, Guildford GU27XH, Surrey, England
基金
欧盟地平线“2020”; 芬兰科学院;
关键词
Software-defined networking (SDN); Moving Target Defense (MTD); Distributed Denial of Service (DDoS); Cost-effective; Edge-based Shuffling; Low-complexity; MOVING TARGET DEFENSE;
D O I
10.1109/GLOBECOM48099.2022.10000603
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Protecting large-scale networks, especially Software-Defined Networks (SDNs), against distributed attacks in a cost-effective manner plays a prominent role in cybersecurity. One of the pervasive approaches to plug security holes and prevent vulnerabilities from being exploited is Moving Target Defense (MTD), which can be efficiently implemented in SDN as it needs comprehensive and proactive network monitoring. The critical key in MTD is to shuffle the least number of hosts with an acceptable security impact and keep the shuffling frequency low. In this paper, we have proposed an SDN-oriented Cost-effective Edge-based MTD Approach (SCEMA) to mitigate Distributed Denial of Service (DDoS) attacks with a lower cost by shuffling an optimized set of hosts have the highest number of connections to the critical servers. These connections are named edges from a graph-theoretical point of view. We have designed a system based on SCEMA and simulated it in Mininet. The results show that SCEMA has lower (52..52 58. %) complexity than the previous related MTD methods with improving the security level by.14.32.%.
引用
收藏
页码:4173 / 4178
页数:6
相关论文
共 50 条
  • [1] Cost-Effective Survivable Controller Placement in Software-Defined Networks
    Seyedkolaei, Ali Abdi
    Seno, Seyed Amin Hosseini
    Moradi, Ahmad
    Budiarto, Rahmat
    [J]. IEEE ACCESS, 2021, 9 : 129130 - 129140
  • [2] Automated Controller Placement for Software-Defined Networks to Resist DDoS Attacks
    Haque, Muhammad Reazul
    Tan, Saw Chin
    Yusoff, Zulfadzli
    Nisar, Kashif
    Kwang, Lee Ching
    Kaspin, Rizaludin
    Chowdhry, Bhawani Shankar
    Buyya, Rajkumar
    Majumder, Satya Prasad
    Gupta, Manoj
    Memon, Shuaib
    [J]. CMC-COMPUTERS MATERIALS & CONTINUA, 2021, 68 (03): : 3147 - 3165
  • [3] Distributed Denial of Service (DDoS) Attacks in Software-defined Networks (SDN)
    Chahal, Jasmeen Kaur
    Kaur, Puninder
    Sharma, Avinash
    [J]. 2021 5TH INTERNATIONAL CONFERENCE ON ELECTRICAL, ELECTRONICS, COMMUNICATION, COMPUTER TECHNOLOGIES AND OPTIMIZATION TECHNIQUES (ICEECCOT), 2021, : 291 - 295
  • [4] Hybrid Deep Learning Approach for Automatic DoS/DDoS Attacks Detection in Software-Defined Networks
    Elubeyd, Hani
    Yiltas-Kaplan, Derya
    [J]. APPLIED SCIENCES-BASEL, 2023, 13 (06):
  • [5] A Novel Cost-Effective Controller Placement Scheme for Software-Defined Vehicular Networks
    Lin, Na
    Zhao, Qi
    Zhao, Liang
    Hawbani, Ammar
    Liu, Lu
    Min, Geyong
    [J]. IEEE INTERNET OF THINGS JOURNAL, 2021, 8 (18) : 14080 - 14093
  • [6] Effective software-defined networking controller scheduling method to mitigate DDoS attacks
    Yan, Q.
    Gong, Q.
    Yu, F. R.
    [J]. ELECTRONICS LETTERS, 2017, 53 (07) : 469 - 471
  • [7] The forensics of ddos attacks in the fifth generation mobile networks based on software-defined networks
    Sedaghat, Shahrzad
    [J]. Sedaghat, Shahrzad (shsedaghat@jahromu.ac.ir), 1600, Femto Technique Co., Ltd. (22): : 41 - 53
  • [8] Addressing Spoofed DDoS Attacks in Software-defined Networking
    Swami, Rochak
    Dave, Mayank
    Ranga, Virender
    [J]. 2021 6TH INTERNATIONAL CONFERENCE FOR CONVERGENCE IN TECHNOLOGY (I2CT), 2021,
  • [9] Adaptive Bubble Burst (ABB): Mitigating DDoS Attacks in Software-Defined Networks
    Sattar, Danish
    Matrawy, Ashraf
    Adeojo, Olufemi
    [J]. 2016 17TH INTERNATIONAL TELECOMMUNICATIONS NETWORK STRATEGY AND PLANNING SYMPOSIUM (NETWORKS), 2016, : 50 - 55
  • [10] Effective Topology Tampering Attacks and Defenses in Software-Defined Networks
    Skowyra, Richard
    Xu, Lei
    Gu, Guofei
    Dedhia, Veer
    Hobson, Thomas
    Okhravi, Hamed
    Landry, James
    [J]. 2018 48TH ANNUAL IEEE/IFIP INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS AND NETWORKS (DSN), 2018, : 374 - 385