An integrated SDN framework for early detection of DDoS attacks in cloud computing

被引:0
|
作者
Asha Varma Songa
Ganesh Reddy Karri
机构
[1] VIT-AP University,School of Computer Science and Engineering
来源
关键词
Cloud computing; SDN; DDOS; Event correlation; DBSCAN clustering;
D O I
暂无
中图分类号
学科分类号
摘要
Cloud computing is a rapidly advancing technology with numerous benefits, such as increased availability, scalability, and flexibility. Relocating computing infrastructure to a network simplifies hardware and software resource monitoring in the cloud. Software-Defined Networking (SDN)-based cloud networking improves cloud infrastructure efficiency by dynamically allocating and utilizing network resources. While SDN cloud networks offer numerous advantages, they are vulnerable to Distributed Denial-of-Service (DDoS) attacks. DDoS attacks try to stop genuine users from using services and drain network resources to reduce performance or shut down services. However, early-stage detection of DDoS attack patterns in cloud environments remains challenging. Current methods detect DDoS at the SDN controller level, which is often time-consuming. We recommend focusing on SDN switches for early detection. Due to the large volume of data from diverse sources, we recommend traffic clustering and traffic anomalies prediction which is of DDoS attacks at each switch. Furthermore, to consolidate the data from multiple clusters, event correlation is performed to understand network behavior and detect coordinated attack activities. Many existing techniques stay behind for early detection and integration of multiple techniques to detect DDoS attack patterns. In this paper, we introduce a more efficient and effectively integrated SDN framework that addresses a gap in previous DDoS solutions. Our framework enables early and accurate detection of DDoS traffic patterns within SDN-based cloud environments. In this framework, we use Recursive Feature Elimination (RFE), Density Based Spatial Clustering (DBSCAN), time series techniques like Auto Regressive Integrated Moving Average (ARIMA), Lyapunov exponent, exponential smoothing filter, dynamic threshold, and lastly, Rule-based classifier. We have evaluated the proposed RDAER model on the CICDDoS 2019 dataset, that achieved an accuracy level of 99.92% and a fast detection time of 20 s, outperforming existing methods.
引用
收藏
相关论文
共 50 条
  • [41] An Integrated Honeypot Framework for Proactive Detection, Characterization and Redirection of DDoS Attacks at ISP level
    Sardana, Anjali
    Joshi, R. C.
    [J]. JOURNAL OF INFORMATION ASSURANCE AND SECURITY, 2008, 3 (01): : 1 - 15
  • [42] BDF-SDN: A Big Data Framework for DDoS Attack Detection in Large-Scale SDN-Based Cloud
    Phuc Trinh Dinh
    Park, Minho
    [J]. 2021 IEEE CONFERENCE ON DEPENDABLE AND SECURE COMPUTING (DSC), 2021,
  • [43] The DDoS attacks detection through machine learning and statistical methods in SDN
    Afsaneh Banitalebi Dehkordi
    MohammadReza Soltanaghaei
    Farsad Zamani Boroujeni
    [J]. The Journal of Supercomputing, 2021, 77 : 2383 - 2415
  • [44] The DDoS attacks detection through machine learning and statistical methods in SDN
    Dehkordi, Afsaneh Banitalebi
    Soltanaghaei, MohammadReza
    Boroujeni, Farsad Zamani
    [J]. JOURNAL OF SUPERCOMPUTING, 2021, 77 (03): : 2383 - 2415
  • [45] SDN-based detection and mitigation of DDoS attacks on smart homes
    Garba, Usman Haruna
    Toosi, Adel N.
    Pasha, Muhammad Fermi
    Khan, Suleman
    [J]. COMPUTER COMMUNICATIONS, 2024, 221 : 29 - 41
  • [46] DNS Amplification Based DDoS Attacks in SDN Environment: Detection and Mitigation
    Gupta, Vishal
    Kochar, Amrit
    Saharan, Shail
    Kulshrestha, Rakhee
    [J]. 2019 IEEE 4TH INTERNATIONAL CONFERENCE ON COMPUTER AND COMMUNICATION SYSTEMS (ICCCS 2019), 2019, : 473 - 478
  • [47] DDoS Attacks and Flash Event Detection Based on Flow Characteristics in SDN
    Sun, Guozi
    Jiang, Wenti
    Gu, Yu
    Ren, Danni
    Li, Huakang
    [J]. 2018 15TH IEEE INTERNATIONAL CONFERENCE ON ADVANCED VIDEO AND SIGNAL BASED SURVEILLANCE (AVSS), 2018, : 556 - 561
  • [48] Modeling DDOS attacks in sdn and detection using random forest classifier
    Abdullahi Wabi, Aishatu
    Idris, Ismail
    Mikail Olaniyi, Olayemi
    Joseph, A.
    Surajudeen Adebayo, Olawale
    [J]. Journal of Cyber Security Technology, 2024, 8 (04) : 229 - 242
  • [49] Early detection of DDoS based on φ-entropy in SDN networks
    Li, Runyu
    Wu, Bin
    [J]. PROCEEDINGS OF 2020 IEEE 4TH INFORMATION TECHNOLOGY, NETWORKING, ELECTRONIC AND AUTOMATION CONTROL CONFERENCE (ITNEC 2020), 2020, : 731 - 735
  • [50] SDN-Defend: A Lightweight Online Attack Detection and Mitigation System for DDoS Attacks in SDN
    Wang, Jin
    Wang, Liping
    [J]. SENSORS, 2022, 22 (21)