A Machine Learning Based Detection and Mitigation of the DDOS Attack by Using SDN Controller Framework

被引:20
|
作者
Revathi, M. [1 ]
Ramalingam, V. V. [1 ]
Amutha, B. [1 ]
机构
[1] SRM Inst Sci & Technol, Dept Comp Sci & Engn, Kattankulathur 603203, India
关键词
Software-defined networking; DDoS attack; Spark standardization technique; Semantic multilinear component analysis; Discrete scalable memory based support vector machine algorithm; Mininet; RYU controller;
D O I
10.1007/s11277-021-09071-1
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
Recently, SDN has arisen as a new network platform that offers unparalleled programming that enables network operators to dynamically customize and control their networks. The attackers aim to paralyse the logical plane, the brain of the network that offers several advantages, by using the SDN controller. However, the control plane is the desirable target of security attacks on the opponents because of its characteristics. One of the most common threats is the DDOS attacks to drain network capacity by sending them heavy traffic, causing network congestion. SDN is a common area of investigation for SDN defenceand DDoS threat identification and prevention in the SDN context has been introduced to many researchers since the proposed SDN attacks. Nevertheless, security risks must be adequately secured. In this paper we suggest a discrete scalable memory based support vector machine algorithm for DDoS threat and SDN mitigation architecture for attack detection. By starting the process of attack detection the input data can gets pre-processed by using Spark standardization technique in which the missing values are replaced and the unwanted data are removed. Then the feature extractions are done using semantic multilinear component analysis algorithm. The classifier is responsible for predicting target and for this a novel discrete scalable memory based support vector machine (DSM-SVM) algorithm is used which provides high accuracy of attack prediction. Followed by attack detection the mitigation process was done, here the mitigation server can identify the threat by intelligently dropping malicious bot traffic and absorbing the rest of the traffic. Here the suggested mechanism achieves attack traffic mitigation and benign traffic dropping. We have evaluated the whole process on KDD dataset. The proposed network model was trained and then used in an SDN threat detection and mitigation environment as part of the assessment process. The entire experiment is run on a VMware-based Ubuntu virtual machine. Weka will utilize our suggested classifier model for training and evaluation, while Mininet uses a RYU controller to establish an SD Network. The findings demonstrate that the mechanism presented exceeds the other algorithms examined, by expressing 99.7% accuracy especially concerning training and testing time over KDD dataset.
引用
收藏
页码:2417 / 2441
页数:25
相关论文
共 50 条
  • [31] An Impact Analysis: Real Time DDoS Attack Detection and Mitigation using Machine Learning
    Devi, B. S. Kiruthika
    Preetha, G.
    Selvaram, G.
    Shalinie, S. Mercy
    2014 INTERNATIONAL CONFERENCE ON RECENT TRENDS IN INFORMATION TECHNOLOGY (ICRTIT), 2014,
  • [32] FlowTrApp: An SDN Based Architecture for DDoS Attack Detection and Mitigation in Data Centers
    Buragohain, Chaitanya
    Medhi, Nabajyoti
    2016 3RD INTERNATIONAL CONFERENCE ON SIGNAL PROCESSING AND INTEGRATED NETWORKS (SPIN), 2016, : 525 - 530
  • [33] Machine learning-based DDOS attack detection and mitigation in SDNs for IoT environments
    Kavitha, D.
    Ramalakshmi, R.
    JOURNAL OF THE FRANKLIN INSTITUTE-ENGINEERING AND APPLIED MATHEMATICS, 2024, 361 (17):
  • [34] DDoS Attack Detection and Mitigation at SDN Data Plane Layer
    Abdulkarem, Huda Saleh
    Dawod, Ammar
    2020 IEEE 2ND GLOBAL POWER, ENERGY AND COMMUNICATION CONFERENCE (IEEE GPECOM2020), 2020, : 322 - 326
  • [35] Physical Assessment of an SDN-Based Security Framework for DDoS Attack Mitigation: Introducing the SDN-SlowRate-DDoS Dataset
    Yungaicela-Naula, Noe M.
    Vargas-Rosales, Cesar
    Perez-Diaz, Jesus Arturo
    Jacob, Eduardo
    Martinez-Cagnazzo, Carlos
    IEEE ACCESS, 2023, 11 : 46820 - 46831
  • [36] Detection of DDoS Attack in IoT Using Machine Learning
    Kumar, Naveen
    Aleem, Abdul
    Kumar, Sachin
    ADVANCED NETWORK TECHNOLOGIES AND INTELLIGENT COMPUTING, ANTIC 2021, 2022, 1534 : 190 - 199
  • [37] DDoS Attack Detection Method Based on Machine Learning
    Liu, Cuilian
    Zhong, Sirong
    2024 IEEE 15TH INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING AND SERVICE SCIENCE, ICSESS 2024, 2024, : 83 - 87
  • [38] A Comprehensive Analysis of Machine Learning- and Deep Learning-Based Solutions for DDoS Attack Detection in SDN
    Naziya Aslam
    Shashank Srivastava
    M. M. Gore
    Arabian Journal for Science and Engineering, 2024, 49 : 3533 - 3573
  • [39] A Novel Feature-Based DDoS Detection and Mitigation Scheme in SDN Controller Using Queueing Theory
    Ava Tahmasebi
    Ahmad Salahi
    Mohammad Ali Pourmina
    Wireless Personal Communications, 2021, 117 : 1985 - 2006
  • [40] Mitigation of DDoS Attack Using Moving Target Defense in SDN
    Swami, Rochak
    Dave, Mayank
    Ranga, Virender
    WIRELESS PERSONAL COMMUNICATIONS, 2023, 131 (04) : 2429 - 2443