SDN/NFV-based framework for autonomous defense against slow-rate DDoS attacks by using reinforcement learning

被引:10
|
作者
Yungaicela-Naula, Noe M. [1 ]
Vargas-Rosales, Cesar [1 ]
Perez-Diaz, Jesus A. [1 ]
机构
[1] Tecnol Monterrey, Sch Engn & Sci, Monterrey 64849, Nuevo Leon, Mexico
关键词
Network function virtualization (NFV); Moving target defense (MTD); Reinforcement learning (RL); Slow-rate DDoS; Software defined networking (SDN); Zero touch networks and service; management (ZSM); MOVING TARGET DEFENSE; SDN;
D O I
10.1016/j.future.2023.08.007
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
The unforeseen and skyrocketed shift in the number of connections to the Internet during the last years has created vast and critical vulnerabilities in networks that cybercriminals have quickly seized to launch high-volume DDoS attacks. Existing tools, such as advanced firewalls or intrusion prevention systems (IPS), cannot handle such an elevated volume of attacks because these solutions are dependent on humans. Therefore, adaptation of the current network security solutions to automated ones is more significant than ever to foster the development of the zero-touch networks and service management (ZSM) paradigm. Building on our preliminary work in this field, in this study, we provide a software-defined networking (SDN)-based framework that automates the detection and mitigation of slow-rate DDoS attacks. The framework uses deep learning (DL) to detect attacks and reinforcement learning (RL) to mitigate them. Furthermore, a network function virtualization (NFV)-assisted moving target defense (MTD) mechanism is included to amplify the effectiveness and flexibility of the solution. The framework is tested on a simulated network using open-source tools, namely Open Network Operating System (ONOS), Containernet, Apache Web Server, and Docker. The source code of a prototype of the framework is shared, which can be used and improved by interested researchers. Finally, the experimental results demonstrate that RL agents learn optimal DDoS mitigation policies in different scenarios and that they quickly adapt to new conditions that vary in short periods of time. & COPY; 2023 Elsevier B.V. All rights reserved.
引用
收藏
页码:637 / 649
页数:13
相关论文
共 50 条
  • [21] Instance-based defense against adversarial attacks in Deep Reinforcement Learning
    Garcia, Javier
    Sagredo, Ismael
    ENGINEERING APPLICATIONS OF ARTIFICIAL INTELLIGENCE, 2022, 107
  • [22] BSDN-HMTD: A blockchain supported SDN framework for detecting DDoS attacks using deep learning method
    Ramadass, Parthasarathy
    Sekar, Raja Shree
    Srinivasan, Saravanan
    Mathivanan, Sandeep Kumar
    Shivahare, Basu Dev
    Mallik, Saurav
    Ahmad, Naim
    Ghribi, Wade
    EGYPTIAN INFORMATICS JOURNAL, 2024, 27
  • [23] A Machine Learning Based Detection and Mitigation of the DDOS Attack by Using SDN Controller Framework
    M. Revathi
    V. V. Ramalingam
    B. Amutha
    Wireless Personal Communications, 2022, 127 (3) : 2417 - 2441
  • [24] A Machine Learning Based Detection and Mitigation of the DDOS Attack by Using SDN Controller Framework
    Revathi, M.
    Ramalingam, V. V.
    Amutha, B.
    WIRELESS PERSONAL COMMUNICATIONS, 2022, 127 (03) : 2417 - 2441
  • [25] Credibility-Based Countermeasure Against Slow HTTP DoS Attacks by Using SDN
    Wang, You-Chiun
    Ye, Ren-Xuan
    2021 IEEE 11TH ANNUAL COMPUTING AND COMMUNICATION WORKSHOP AND CONFERENCE (CCWC), 2021, : 890 - 895
  • [26] Defending SDN-based IoT Networks Against DDoS Attacks Using Markov Decision Process
    Zheng, Jianjun
    Namin, Akbar Siami
    2018 IEEE INTERNATIONAL CONFERENCE ON BIG DATA (BIG DATA), 2018, : 4589 - 4592
  • [27] Defense mechanisms against DDoS attack based on entropy in SDN-cloud using POX controller
    Mishra, Anupama
    Gupta, Neena
    Gupta, B. B.
    TELECOMMUNICATION SYSTEMS, 2021, 77 (01) : 47 - 62
  • [28] Defense mechanisms against DDoS attack based on entropy in SDN-cloud using POX controller
    Anupama Mishra
    Neena Gupta
    B. B. Gupta
    Telecommunication Systems, 2021, 77 : 47 - 62
  • [29] A Curriculum Framework for Autonomous Network Defense using Multi-agent Reinforcement Learning
    Campbell, Robert G.
    Eirinaki, Magdalini
    Park, Younghee
    2023 SILICON VALLEY CYBERSECURITY CONFERENCE, SVCC, 2023,
  • [30] A Blockchain-Based Federated-Learning Framework for Defense against Backdoor Attacks
    Li, Lu
    Qin, Jiwei
    Luo, Jintao
    ELECTRONICS, 2023, 12 (11)