A Machine Learning Based Detection and Mitigation of the DDOS Attack by Using SDN Controller Framework

被引:20
|
作者
Revathi, M. [1 ]
Ramalingam, V. V. [1 ]
Amutha, B. [1 ]
机构
[1] SRM Inst Sci & Technol, Dept Comp Sci & Engn, Kattankulathur 603203, India
关键词
Software-defined networking; DDoS attack; Spark standardization technique; Semantic multilinear component analysis; Discrete scalable memory based support vector machine algorithm; Mininet; RYU controller;
D O I
10.1007/s11277-021-09071-1
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
Recently, SDN has arisen as a new network platform that offers unparalleled programming that enables network operators to dynamically customize and control their networks. The attackers aim to paralyse the logical plane, the brain of the network that offers several advantages, by using the SDN controller. However, the control plane is the desirable target of security attacks on the opponents because of its characteristics. One of the most common threats is the DDOS attacks to drain network capacity by sending them heavy traffic, causing network congestion. SDN is a common area of investigation for SDN defenceand DDoS threat identification and prevention in the SDN context has been introduced to many researchers since the proposed SDN attacks. Nevertheless, security risks must be adequately secured. In this paper we suggest a discrete scalable memory based support vector machine algorithm for DDoS threat and SDN mitigation architecture for attack detection. By starting the process of attack detection the input data can gets pre-processed by using Spark standardization technique in which the missing values are replaced and the unwanted data are removed. Then the feature extractions are done using semantic multilinear component analysis algorithm. The classifier is responsible for predicting target and for this a novel discrete scalable memory based support vector machine (DSM-SVM) algorithm is used which provides high accuracy of attack prediction. Followed by attack detection the mitigation process was done, here the mitigation server can identify the threat by intelligently dropping malicious bot traffic and absorbing the rest of the traffic. Here the suggested mechanism achieves attack traffic mitigation and benign traffic dropping. We have evaluated the whole process on KDD dataset. The proposed network model was trained and then used in an SDN threat detection and mitigation environment as part of the assessment process. The entire experiment is run on a VMware-based Ubuntu virtual machine. Weka will utilize our suggested classifier model for training and evaluation, while Mininet uses a RYU controller to establish an SD Network. The findings demonstrate that the mechanism presented exceeds the other algorithms examined, by expressing 99.7% accuracy especially concerning training and testing time over KDD dataset.
引用
收藏
页码:2417 / 2441
页数:25
相关论文
共 50 条
  • [21] An Improved Method of DDoS Attack Detection for Controller of SDN
    Sun, Wenwen
    Li, Yi
    Guan, Shaopeng
    2019 IEEE 2ND INTERNATIONAL CONFERENCE ON COMPUTER AND COMMUNICATION ENGINEERING TECHNOLOGY (CCET), 2019, : 249 - 253
  • [22] A Detection Method for DDoS Attack against SDN Controller
    Meng, Linhai
    Guo, Xiao
    PROCEEDINGS OF THE 4TH ANNUAL INTERNATIONAL CONFERENCE ON MATERIAL ENGINEERING AND APPLICATION (ICMEA 2017), 2017, 146 : 292 - 296
  • [23] A Novel Machine Learning Framework for Advanced Attack Detection using SDN
    Abou El Houda, Zakaria
    Hafid, Abdelhakim Senhaji
    Khoukhi, Lyes
    2021 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2021,
  • [24] DDoS Detection in SDN using Machine Learning Techniques
    Nadeem, Muhammad Waqas
    Goh, Hock Guan
    Ponnusamy, Vasaki
    Aun, Yichiet
    CMC-COMPUTERS MATERIALS & CONTINUA, 2022, 71 (01): : 771 - 789
  • [25] Machine Learning Based DDoS Attack Detection
    Ajeetha, G.
    Priya, Madhu G.
    2019 INNOVATIONS IN POWER AND ADVANCED COMPUTING TECHNOLOGIES (I-PACT), 2019,
  • [26] Design a Robust DDoS Attack Detection and Mitigation Scheme in SDN-Edge-IoT by Leveraging Machine Learning
    Belachew, Habtamu Molla
    Beyene, Mulatu Yirga
    Desta, Abinet Bizuayehu
    Alemu, Behaylu Tadele
    Musa, Salahadin Seid
    Muhammed, Alemu Jorgi
    IEEE ACCESS, 2025, 13 : 10194 - 10214
  • [27] A DDoS Attack Detection on Cloud Framework Using Improved Features Based Machine Learning Approach
    Bhargav, Ravi
    Jain, Vishal
    Verma, Manish
    2022 SECOND INTERNATIONAL CONFERENCE ON ADVANCES IN ELECTRICAL, COMPUTING, COMMUNICATION AND SUSTAINABLE TECHNOLOGIES (ICAECT), 2022,
  • [28] SDN-Based Architecture for Transport and Application Layer DDoS Attack Detection by Using Machine and Deep Learning
    Yungaicela-Naula, Noe Marcelo
    Vargas-Rosales, Cesar
    Perez-Diaz, Jesus Arturo
    IEEE ACCESS, 2021, 9 : 108495 - 108512
  • [29] Secure SDN-IoT Framework for DDoS Attack Detection Using Deep Learning and Counter Based Approach
    Cherian, Mimi
    Varma, Satishkumar L.
    JOURNAL OF NETWORK AND SYSTEMS MANAGEMENT, 2023, 31 (03)
  • [30] DDoS attack detection and mitigation using deep neural network in SDN environment
    Hnamte, Vanlalruata
    Najar, Ashfaq Ahmad
    Hong, Nhung-Nguyen
    Hussain, Jamal
    Sugali, Manohar Naik
    COMPUTERS & SECURITY, 2024, 138