An integrated SDN framework for early detection of DDoS attacks in cloud computing

被引:0
|
作者
Asha Varma Songa
Ganesh Reddy Karri
机构
[1] VIT-AP University,School of Computer Science and Engineering
来源
关键词
Cloud computing; SDN; DDOS; Event correlation; DBSCAN clustering;
D O I
暂无
中图分类号
学科分类号
摘要
Cloud computing is a rapidly advancing technology with numerous benefits, such as increased availability, scalability, and flexibility. Relocating computing infrastructure to a network simplifies hardware and software resource monitoring in the cloud. Software-Defined Networking (SDN)-based cloud networking improves cloud infrastructure efficiency by dynamically allocating and utilizing network resources. While SDN cloud networks offer numerous advantages, they are vulnerable to Distributed Denial-of-Service (DDoS) attacks. DDoS attacks try to stop genuine users from using services and drain network resources to reduce performance or shut down services. However, early-stage detection of DDoS attack patterns in cloud environments remains challenging. Current methods detect DDoS at the SDN controller level, which is often time-consuming. We recommend focusing on SDN switches for early detection. Due to the large volume of data from diverse sources, we recommend traffic clustering and traffic anomalies prediction which is of DDoS attacks at each switch. Furthermore, to consolidate the data from multiple clusters, event correlation is performed to understand network behavior and detect coordinated attack activities. Many existing techniques stay behind for early detection and integration of multiple techniques to detect DDoS attack patterns. In this paper, we introduce a more efficient and effectively integrated SDN framework that addresses a gap in previous DDoS solutions. Our framework enables early and accurate detection of DDoS traffic patterns within SDN-based cloud environments. In this framework, we use Recursive Feature Elimination (RFE), Density Based Spatial Clustering (DBSCAN), time series techniques like Auto Regressive Integrated Moving Average (ARIMA), Lyapunov exponent, exponential smoothing filter, dynamic threshold, and lastly, Rule-based classifier. We have evaluated the proposed RDAER model on the CICDDoS 2019 dataset, that achieved an accuracy level of 99.92% and a fast detection time of 20 s, outperforming existing methods.
引用
收藏
相关论文
共 50 条
  • [21] A Survey on the Impact of DDoS Attacks in Cloud Computing: Prevention, Detection and Mitigation Techniques
    Srinivasan, Karthik
    Mubarakali, Azath
    Alqahtani, Abdulrahman Saad
    Kumar, A. Dinesh
    [J]. INTELLIGENT COMMUNICATION TECHNOLOGIES AND VIRTUAL MOBILE NETWORKS, ICICV 2019, 2020, 33 : 252 - 270
  • [22] DeepDefend: A comprehensive framework for DDoS attack detection and prevention in cloud computing
    Ouhssini, Mohamed
    Afdel, Karim
    Agherrabi, Elhafed
    Akouhar, Mohamed
    Abarda, Abdallah
    [J]. JOURNAL OF KING SAUD UNIVERSITY-COMPUTER AND INFORMATION SCIENCES, 2024, 36 (02)
  • [23] Towards Securing Cloud Computing from DDOS Attacks
    Ahmed, Ishtiaq
    Ahmed, Sheeraz
    Nawaz, Asif
    Jan, Sadeeq
    Najam, Zeeshan
    Saadat, Muneeb
    Khan, Rehan Ali
    Zaman, Khalid
    [J]. INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2020, 11 (08) : 615 - 622
  • [24] Shield Applications Opposite to DDOS Attacks in Cloud Computing
    Madhan, G.
    Tirupathamma, K. Rasi
    Saitha, K.
    Reddy, K. Anji
    [J]. INTERNATIONAL JOURNAL OF EARLY CHILDHOOD SPECIAL EDUCATION, 2022, 14 (03) : 2437 - 2445
  • [25] Towards securing cloud computing from DDOS attacks
    Ahmed I.
    Ahmed S.
    Nawaz A.
    Jan S.
    Najam Z.
    Saadat M.
    Khan R.A.
    Zaman K.
    [J]. 1600, Science and Information Organization (11): : 615 - 622
  • [26] Study on DDoS Attacks based on DPDK in Cloud Computing
    Zhao, Xutao
    [J]. 2017 3RD IEEE INTERNATIONAL CONFERENCE ON COMPUTATIONAL INTELLIGENCE & COMMUNICATION TECHNOLOGY (CICT), 2017,
  • [27] CoWatch: Collaborative Prediction of DDoS Attacks in Edge Computing with Distributed SDN
    Zhou, Hongliang
    Jia, Xiaohua
    Shu, Jiangang
    Zhou, Lei
    [J]. 2021 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2021,
  • [28] SDN, A Research on SDN Assets and Tools to Defense DDoS Attack in Cloud Computing Environment
    Tamanna, Tasnim
    Fatema, Tasmiah
    Saha, Reepa
    [J]. 2017 2ND IEEE INTERNATIONAL CONFERENCE ON WIRELESS COMMUNICATIONS, SIGNAL PROCESSING AND NETWORKING (WISPNET), 2017, : 1670 - 1674
  • [29] Analysis and Detection of DDoS Attacks on Cloud Computing Environment using Machine Learning Techniques
    Wani, Abdul Raoof
    Rana, Q. P.
    Saxena, U.
    Pandey, Nitin
    [J]. PROCEEDINGS 2019 AMITY INTERNATIONAL CONFERENCE ON ARTIFICIAL INTELLIGENCE (AICAI), 2019, : 870 - 875
  • [30] An SDN-based Decision Tree Detection (DTD) Model for Detecting DDoS Attacks in Cloud Environment
    Praba, J. Jeba
    Sridaran, R.
    [J]. INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2022, 13 (07) : 54 - 64