DDOS Attack Detection & Prevention in SDN using OpenFlow Statistics

被引:0
|
作者
Ahuja, Nisha [1 ]
Singal, Gaurav [1 ]
机构
[1] Bennett Univ, Dept CSE, Greater Noida, India
关键词
SDN; Mininet; Network attack; Traffic simulation; DDOS;
D O I
10.1109/iacc48062.2019.8971596
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Software defined Network is a network defined by software, which is one of the important feature which makes the legacy old networks to be flexible for dynamic configuration and so can cater to today's dynamic application requirement. It is a programmable network but it is prone to different type of attacks due to its centralized architecture. The author provided a solution to detect and prevent Distributed Denial of service attack in the paper. Mininet [5] which is a popular emulator for Software defined Network is used. We followed the approach in which collection of the traffic statistics from the various switches is done. After collection we calculated the packet rate and bandwidth which shoots up to high values when attack take place. The abrupt increase detects the attack which is then prevented by changing the forwarding logic of the host nodes to drop the packets instead of forwarding. After this, no more packets will be forwarded and then we also delete the forwarding rule in the flow table. Hence, we are finding out the change in packet rate and bandwidth to detect the attack and to prevent the attack we modify the forwarding logic of the switch flow table to drop the packets coming from malicious host instead of forwarding it.
引用
收藏
页码:147 / 152
页数:6
相关论文
共 50 条
  • [1] Packet_In message based DDoS attack detection in SDN network using OpenFlow
    You, Xiang
    Feng, Yaokai
    Sakurai, Kouichi
    2017 FIFTH INTERNATIONAL SYMPOSIUM ON COMPUTING AND NETWORKING (CANDAR), 2017, : 522 - 528
  • [2] Lightweight DDoS Flooding Attack Detection Using NOX/OpenFlow
    Braga, Rodrigo
    Mota, Edjard
    Passito, Alexandre
    IEEE LOCAL COMPUTER NETWORK CONFERENCE, 2010, : 408 - 415
  • [3] Detection of DDoS Attack Using SDN in IoT: A Survey
    Pajila, P. J. Beslin
    Julie, E. Golden
    INTELLIGENT COMMUNICATION TECHNOLOGIES AND VIRTUAL MOBILE NETWORKS, ICICV 2019, 2020, 33 : 438 - 452
  • [4] Detection and defense of DDoS attack-based on deep learning in OpenFlow-based SDN
    Li, Chuanhuang
    Wu, Yan
    Yuan, Xiaoyong
    Sun, Zhengjun
    Wang, Weiming
    Li, Xiaolin
    Gong, Liang
    INTERNATIONAL JOURNAL OF COMMUNICATION SYSTEMS, 2018, 31 (05)
  • [5] ARDefense: DDoS detection and prevention using NFV and SDN
    Singh, Arran Kumar
    Jaiswal, Raj K.
    Abdukodir, Khakimov
    Muthanna, Ammar
    2020 12TH INTERNATIONAL CONGRESS ON ULTRA MODERN TELECOMMUNICATIONS AND CONTROL SYSTEMS AND WORKSHOPS (ICUMT 2020), 2020, : 236 - 241
  • [6] DDoS Attack Detection and Mitigation in SDN using Machine Learning
    Khashab, Fatima
    Moubarak, Joanna
    Feghali, Antoine
    Bassil, Carole
    PROCEEDINGS OF THE 2021 IEEE 7TH INTERNATIONAL CONFERENCE ON NETWORK SOFTWARIZATION (NETSOFT 2021): ACCELERATING NETWORK SOFTWARIZATION IN THE COGNITIVE AGE, 2021, : 395 - 401
  • [7] Efficient DDoS attack detection and prevention scheme based on SDN in cloud environment
    He H.
    Hu Y.
    Zheng L.
    Xue Z.
    He, Heng (heheng@wust.edu.cn), 2018, Editorial Board of Journal on Communications (39): : 139 - 151
  • [8] DDoS Attack Detection under SDN Context
    Xu, Yang
    Liu, Yong
    IEEE INFOCOM 2016 - THE 35TH ANNUAL IEEE INTERNATIONAL CONFERENCE ON COMPUTER COMMUNICATIONS, 2016,
  • [9] Review of Research on DDoS Attack Detection in SDN
    Zheng, Chengwei
    Wang, Haifeng
    Liu, Rui
    Computer Engineering and Applications, 2024, 60 (24) : 79 - 96
  • [10] DoS Attack Detection using Packet Statistics in SDN
    Goksel, Nail
    Demirci, Mehmet
    2019 INTERNATIONAL SYMPOSIUM ON NETWORKS, COMPUTERS AND COMMUNICATIONS (ISNCC 2019), 2019,