Entropy-Based Approach to Detect DDoS Attacks on Software Defined Networking Controller

被引:0
|
作者
Aladaileh, Mohammad [1 ]
Anbar, Mohammed [1 ]
Hasbullah, Iznan H. [1 ]
Sanjalawe, Yousef K. [1 ,2 ]
Chong, Yung-Wey [1 ]
机构
[1] Univ Sains Malaysia, Natl Adv IPv6 Ctr Excellence, George Town, Malaysia
[2] Northern Border Univ, Dept Comp Sci, Ar Ar, Saudi Arabia
来源
CMC-COMPUTERS MATERIALS & CONTINUA | 2021年 / 69卷 / 01期
关键词
Software-defined networking; DDoS attack; distributed denial of service; Renyi joint entropy; ANOMALY DETECTION; SECURITY;
D O I
10.32604/cmc.2021.017972
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The Software-Defined Networking (SDN) technology improves network management over existing technology via centralized network control. The SDN provides a perfect platform for researchers to solve traditional network's outstanding issues. However, despite the advantages of centralized control, concern about its security is rising. The more traditional network switched to SDN technology, the more attractive it becomes to malicious actors, especially the controller, because it is the network's brain. A Distributed Denial of Service (DDoS) attack on the controller could cripple the entire network. For that reason, researchers are always looking for ways to detect DDoS attacks against the controller with higher accuracy and lower false-positive rate. This paper proposes an entropy-based approach to detect low-rate and high-rate DDoS attacks against the SDN controller, regardless of the number of attackers or targets. The proposed approach generalized the Renyi joint entropy for analyzing the network traffic flow to detect DDoS attack traffic flow of varying rates. Using two packet header features and generalized Renyi joint entropy, the proposed approach achieved a better detection rate than the EDDSC approach that uses Shannon entropy metrics.
引用
收藏
页码:373 / 391
页数:19
相关论文
共 50 条
  • [1] Entropy-based approach to detect DDoS attacks on software defined networking controller
    Aladaileh, Mohammad
    Anbar, Mohammed
    Hasbullah, Iznan H.
    Sanjalawe, Yousef K.
    Chong, Yung-Wey
    [J]. Computers, Materials and Continua, 2021, 69 (01): : 373 - 391
  • [2] An Entropy-Based Distributed DDoS Detection Mechanism in Software-Defined Networking
    Wang, Rui
    Jia, Zhiping
    Ju, Lei
    [J]. 2015 IEEE TRUSTCOM/BIGDATASE/ISPA, VOL 1, 2015, : 310 - 317
  • [3] Dynamic Threshold-Based Approach to Detect Low-Rate DDoS Attacks on Software-Defined Networking Controller
    Aladaileh, Mohammad Adnan
    Anbar, Mohammed
    Hasbullah, Iznan H.
    Bahashwan, Abdullah Ahmed
    Al-Sarawn, Shadi
    [J]. CMC-COMPUTERS MATERIALS & CONTINUA, 2022, 73 (01): : 1403 - 1416
  • [4] Detection of DDoS Attacks in Software Defined Networking Using Entropy
    Fan, Cong
    Kaliyamurthy, Nitheesh Murugan
    Chen, Shi
    Jiang, He
    Zhou, Yiwen
    Campbell, Carlene
    [J]. APPLIED SCIENCES-BASEL, 2022, 12 (01):
  • [5] Information theory-based approaches to detect DDoS attacks on software-defined networking controller a review
    Aladaileh, Mohammad A.
    Anbar, Mohammed
    Hasbullah, Iznan H.
    Sanjalawe, Yousef K.
    [J]. INTERNATIONAL JOURNAL OF EDUCATION AND INFORMATION TECHNOLOGIES, 2021, 15 : 83 - 94
  • [6] Effectiveness of Entropy-Based DDoS Prevention for Software Defined Networks
    Whittle, Cameron S.
    Liu, Hong
    [J]. 2021 IEEE VIRTUAL IEEE INTERNATIONAL SYMPOSIUM ON TECHNOLOGIES FOR HOMELAND SECURITY, 2021,
  • [7] Renyi Joint Entropy-Based Dynamic Threshold Approach to Detect DDoS Attacks against SDN Controller with Various Traffic Rates
    Aladaileh, Mohammad Adnan
    Anbar, Mohammed
    Hintaw, Ahmed J.
    Hasbullah, Iznan H.
    Bahashwan, Abdullah Ahmed
    Al-Sarawi, Shadi
    [J]. APPLIED SCIENCES-BASEL, 2022, 12 (12):
  • [8] Effective software-defined networking controller scheduling method to mitigate DDoS attacks
    Yan, Q.
    Gong, Q.
    Yu, F. R.
    [J]. ELECTRONICS LETTERS, 2017, 53 (07) : 469 - 471
  • [9] Review on Detection Techniques against DDoS Attacks on a Software-Defined Networking Controller
    Zubaydi, Haider Dhia
    Anbar, Mohammed
    Wey, Chong Yung
    [J]. 2017 PALESTINIAN INTERNATIONAL CONFERENCE ON INFORMATION AND COMMUNICATION TECHNOLOGY (PICICT), 2017, : 10 - 16
  • [10] Detection and Mitigation of DDoS Attacks Using Conditional Entropy in Software-defined Networking
    Xuanyuan, Ming
    Ramsurrun, Visham
    Seeam, Amar
    [J]. 2019 11TH INTERNATIONAL CONFERENCE ON ADVANCED COMPUTING (ICOAC 2019), 2019, : 66 - 71