SDN/NFV-based framework for autonomous defense against slow-rate DDoS attacks by using reinforcement learning

被引:10
|
作者
Yungaicela-Naula, Noe M. [1 ]
Vargas-Rosales, Cesar [1 ]
Perez-Diaz, Jesus A. [1 ]
机构
[1] Tecnol Monterrey, Sch Engn & Sci, Monterrey 64849, Nuevo Leon, Mexico
关键词
Network function virtualization (NFV); Moving target defense (MTD); Reinforcement learning (RL); Slow-rate DDoS; Software defined networking (SDN); Zero touch networks and service; management (ZSM); MOVING TARGET DEFENSE; SDN;
D O I
10.1016/j.future.2023.08.007
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
The unforeseen and skyrocketed shift in the number of connections to the Internet during the last years has created vast and critical vulnerabilities in networks that cybercriminals have quickly seized to launch high-volume DDoS attacks. Existing tools, such as advanced firewalls or intrusion prevention systems (IPS), cannot handle such an elevated volume of attacks because these solutions are dependent on humans. Therefore, adaptation of the current network security solutions to automated ones is more significant than ever to foster the development of the zero-touch networks and service management (ZSM) paradigm. Building on our preliminary work in this field, in this study, we provide a software-defined networking (SDN)-based framework that automates the detection and mitigation of slow-rate DDoS attacks. The framework uses deep learning (DL) to detect attacks and reinforcement learning (RL) to mitigate them. Furthermore, a network function virtualization (NFV)-assisted moving target defense (MTD) mechanism is included to amplify the effectiveness and flexibility of the solution. The framework is tested on a simulated network using open-source tools, namely Open Network Operating System (ONOS), Containernet, Apache Web Server, and Docker. The source code of a prototype of the framework is shared, which can be used and improved by interested researchers. Finally, the experimental results demonstrate that RL agents learn optimal DDoS mitigation policies in different scenarios and that they quickly adapt to new conditions that vary in short periods of time. & COPY; 2023 Elsevier B.V. All rights reserved.
引用
收藏
页码:637 / 649
页数:13
相关论文
共 50 条
  • [31] Reinforcement Learning-Based Slice Isolation Against DDoS Attacks in Beyond 5G Networks
    Javadpour, Amir
    Ja'fari, Forough
    Taleb, Tarik
    Benzaid, Chafika
    IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2023, 20 (03): : 3930 - 3946
  • [32] Q-MIND: Defeating Stealthy DoS Attacks in SDN with a Machine-learning based Defense Framework
    Phan, Trung V.
    Gias, T. M. Rayhan
    Islam, Syed Tasnimul
    Truong Thu Huong
    Nguyen Huu Thanh
    Bauschert, Thomas
    2019 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2019,
  • [33] Secure SDN–IoT Framework for DDoS Attack Detection Using Deep Learning and Counter Based Approach
    Mimi Cherian
    Satishkumar L. Varma
    Journal of Network and Systems Management, 2023, 31
  • [34] Defense against PUE Attacks in DSA Networks using GAN based Learning
    Roy, Debashri
    Mukherjee, Tathagata
    Chatterjee, Mainak
    Pasiliao, Eduardo
    2019 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2019,
  • [35] Mitigation against DDoS Attacks on an IoT-Based Production Line Using Machine Learning
    Huraj, Ladislav
    Horak, Tibor
    Strelec, Peter
    Tanuska, Pavol
    APPLIED SCIENCES-BASEL, 2021, 11 (04): : 1 - 18
  • [36] Secure SDN-IoT Framework for DDoS Attack Detection Using Deep Learning and Counter Based Approach
    Cherian, Mimi
    Varma, Satishkumar L.
    JOURNAL OF NETWORK AND SYSTEMS MANAGEMENT, 2023, 31 (03)
  • [37] Effectiveness of an Entropy-Based Approach for Detecting Low- and High-Rate DDoS Attacks against the SDN Controller: Experimental Analysis
    Aladaileh, Mohammad Adnan
    Anbar, Mohammed
    Hintaw, Ahmed J.
    Hasbullah, Iznan H.
    Bahashwan, Abdullah Ahmed
    Al-Amiedy, Taief Alaa
    Ibrahim, Dyala R.
    APPLIED SCIENCES-BASEL, 2023, 13 (02):
  • [38] BotDefender: A Collaborative Defense Framework Against Botnet Attacks using Network Traffic Analysis and Machine Learning
    Arvind Prasad
    Shalini Chandra
    Arabian Journal for Science and Engineering, 2024, 49 : 3313 - 3329
  • [39] BotDefender: A Collaborative Defense Framework Against Botnet Attacks using Network Traffic Analysis and Machine Learning
    Prasad, Arvind
    Chandra, Shalini
    ARABIAN JOURNAL FOR SCIENCE AND ENGINEERING, 2024, 49 (03) : 3313 - 3329
  • [40] Multi-Stage Learning Framework Using Convolutional Neural Network and Decision Tree-Based Classification for Detection of DDoS Pandemic Attacks in SDN-Based SCADA Systems
    Polat, Onur
    Turkoglu, Muammer
    Polat, Huseyin
    Oyucu, Saadin
    Uzen, Huseyin
    Yardimci, Fahri
    Aksoz, Ahmet
    SENSORS, 2024, 24 (03)