Detection and Analysis of TCP-SYN DDoS Attack in Software-Defined Networking

被引:0
|
作者
Rochak Swami
Mayank Dave
Virender Ranga
机构
[1] National Institute of Technology,Department of Computer Engineering
来源
关键词
SDN; DDoS; IDS; Machine learning;
D O I
暂无
中图分类号
学科分类号
摘要
Software-defined networking (SDN) is an advanced networking technology that yields flexibility with cost-efficiency as per the business requirements. SDN breaks the vertical integration of control and data plane and promotes centralized network management. SDN allows data intensive applications to work more efficiently by making the network dynamically configurable. With the growing development of SDN technology, the issue of security becomes critical because of its architectural characteristics. Currently, Distributed denial of service (DDoS) is one of the most powerful attacks that cause the services to be unavailable for normal users. DDoS seeks to consume the resources of the SDN controller with the intention to slow down working of the network. In this paper, a detailed analysis of the effect of spoofed and non-spoofed TCP-SYN flooding attacks on the controller resources in SDN is presented. We also suggest a machine learning based intrusion detection system. Five different classification models belong to a variety of families are used to classify the traffic, and evaluated using different performance indicators. Cross-validation technique is used to validate the classification models. This work enables better features to be extracted and classify the traffic efficiently. The experimental results reveal significantly good performance with all the considered classification models.
引用
收藏
页码:2295 / 2317
页数:22
相关论文
共 50 条
  • [41] Redundant rule Detection for Software-Defined Networking
    Su, Jian
    Xu, Ruoyu
    Yu, ShiMing
    Wang, BaoWei
    Wang, Jiuru
    [J]. KSII TRANSACTIONS ON INTERNET AND INFORMATION SYSTEMS, 2020, 14 (06): : 2735 - 2751
  • [42] Collaborative detection and mitigation of DDoS in software-defined networks
    Omer Elsier Tayfour
    Muhammad Nadzir Marsono
    [J]. The Journal of Supercomputing, 2021, 77 : 13166 - 13190
  • [43] Collaborative detection and mitigation of DDoS in software-defined networks
    Tayfour, Omer Elsier
    Marsono, Muhammad Nadzir
    [J]. JOURNAL OF SUPERCOMPUTING, 2021, 77 (11): : 13166 - 13190
  • [44] A Software Defined Networking Architecture for DDoS-Attack in the Storage of Multimicrogrids
    Taherian-Fard, Elaheh
    Niknam, Taher
    Sahebi, Ramin
    Javidsharifi, Mahshid
    Kavousi-Fard, Abdollah
    Aghaei, Jamshid
    [J]. IEEE ACCESS, 2022, 10 : 83802 - 83812
  • [45] Identification and predication of network attack patterns in software-defined networking
    Xu, Xiaojun
    Wang, Shuliang
    Li, Ying
    [J]. PEER-TO-PEER NETWORKING AND APPLICATIONS, 2019, 12 (02) : 337 - 347
  • [46] Identification and predication of network attack patterns in software-defined networking
    Xiaojun Xu
    Shuliang Wang
    Ying Li
    [J]. Peer-to-Peer Networking and Applications, 2019, 12 : 337 - 347
  • [47] Mitigating the Table-Overflow Attack in Software-Defined Networking
    Xu, Tong
    Gao, Deyun
    Dong, Ping
    Foh, Chuan Heng
    Zhang, Hongke
    [J]. IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2017, 14 (04): : 1086 - 1097
  • [48] Stacking ensemble approach for DDoS attack detection in software-defined cyber-physical systems
    Mall, Ramya
    Abhishek, Kumar
    Manimurugan, S.
    Shankar, Achyut
    Kumar, Abhay
    [J]. COMPUTERS & ELECTRICAL ENGINEERING, 2023, 107
  • [49] Securing Software-Defined Vehicular Network Architecture against DDoS attack
    Amari, Houda
    Louati, Wassef
    Khoukhi, Lyes
    Belguith, Lamia Hadrich
    [J]. PROCEEDINGS OF THE IEEE 46TH CONFERENCE ON LOCAL COMPUTER NETWORKS (LCN 2021), 2021, : 653 - 656
  • [50] Attack Detection on the Software Defined Networking Switches
    Tupakula, Uday
    Varadharajan, Vijay
    Karmakar, Kallol Krishna
    [J]. PROCEEDINGS OF THE 2020 6TH IEEE CONFERENCE ON NETWORK SOFTWARIZATION (NETSOFT 2020): BRIDGING THE GAP BETWEEN AI AND NETWORK SOFTWARIZATION, 2020, : 262 - 266