A traffic anomaly detection scheme for non-directional denial of service attacks in software-defined optical network

被引:1
|
作者
Liu, Tao [1 ,2 ]
Wang, He [1 ]
Zhang, Yuqing [1 ,2 ]
机构
[1] Xidian Univ, Sch Cyber Engn, Xian 710126, Peoples R China
[2] Univ Chinese Acad Sci, Natl Comp Network Intrus Protect Ctr, Beijing 100048, Peoples R China
基金
中国国家自然科学基金;
关键词
Software defined network; OpenFlow protocol; Security threat; Traffic anomaly detection; Denial of service attack; Controller; DDOS ATTACKS; TAXONOMY;
D O I
10.1016/j.cose.2021.102467
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
As a promising centralized control architecture, software-defined network (SDN) has been widely used and developed in the field of optical access network. Though, its centralized control architecture has many advantages, it is also hindered by various security threats. Among all the threats, the attack, Denial-of-Service (DoS) is the most severe attack into the software defined optical network (SDON). In spite of, so many developments in tools and technology, there are few effective schemes to detect denial of service attacks in SDON. In our research work, we proposed a traffic anomaly detection scheme by analyzing and defining the specific security threat non-directional denial of service attack (ND-DoS) faced by the SDON. In this scheme, we first designed the function construction of the controller and the extension of the OpenFlow protocol, and then used the adaptive threshold detection algorithm based on time sliding window (TSW-ATD) and the repeated flow detection algorithm (RFD) to complete the first detection and re-detection detection of abnormal traffic, and finally designed a general formulaic measurement method. The proposed scheme is verified by simulation experiments. The experimental results show that compared with the existing related solutions, the forwarding success rate of this scheme is increased by about 29.4%, the data processing rate in the unit window is increased by about 39.3%, and the CPU occupancy rate is reduced by about 17.5%. Therefore, this scheme can effectively deal with DoS attacks in SDON with a higher detection rate and lower resource overhead. (c) 2021 Published Elsevier Ltd.
引用
收藏
页数:13
相关论文
共 50 条
  • [31] Research on Detection and Defense Methods for Software-Defined Network Architecture after Hybrid Attack by Distributed Denial of Service
    Xiao, Hongfei
    Xiang, Tao
    Tang, Shiqi
    IEEJ TRANSACTIONS ON ELECTRICAL AND ELECTRONIC ENGINEERING, 2024, 19 (06) : 1001 - 1006
  • [32] Review on distributed denial of service attack detection in software defined network
    Karthika P.
    Karmel A.
    International Journal of Wireless and Mobile Computing, 2023, 25 (02) : 128 - 146
  • [33] Inline detection of Denial of Service Attacks in Software Defined Networking using the Hotelling Chart
    Bensalah, Faycal
    Kamoun, Najib E. L.
    El Houssaini, Mohammed-Alamine
    10TH INT CONF ON EMERGING UBIQUITOUS SYST AND PERVAS NETWORKS (EUSPN-2019) / THE 9TH INT CONF ON CURRENT AND FUTURE TRENDS OF INFORMAT AND COMMUN TECHNOLOGIES IN HEALTHCARE (ICTH-2019) / AFFILIATED WORKOPS, 2019, 160 : 785 - 790
  • [34] An Inter-Domain Routing Scheme for Software-Defined Optical Network
    Liu Yunshan
    2017 29TH CHINESE CONTROL AND DECISION CONFERENCE (CCDC), 2017, : 2584 - 2588
  • [35] Energy-efficient modulation scheme for software-defined optical network
    Liu, Yuze
    Li, Hui
    Wang, Yunyun
    Duan, Zhiwei
    Ji, Yuefeng
    ELECTRONICS LETTERS, 2017, 53 (18) : 1266 - 1267
  • [36] Software-Defined Optical Networks and Network Abstraction With Functional Service Design
    Cao, Xiaoyuan
    Yoshikane, Noboru
    Popescu, Ion
    Tsuritani, Takehiro
    Morita, Itsuro
    JOURNAL OF OPTICAL COMMUNICATIONS AND NETWORKING, 2017, 9 (04) : C65 - C75
  • [37] SDN-PANDA: Software-Defined Network Platform for ANomaly Detection Applications
    Granby, Brian R.
    Askwith, Bob
    Marnerides, Angelos K.
    2015 IEEE 23RD INTERNATIONAL CONFERENCE ON NETWORK PROTOCOLS (ICNP), 2015, : 463 - 466
  • [38] Control Plane Packet-In Arrival Rate Analysis for Denial-of-Service Saturation Attacks Detection and Mitigation in Software-Defined Networks
    Khellah, Fakhry
    ARABIAN JOURNAL FOR SCIENCE AND ENGINEERING, 2019, 44 (11) : 9349 - 9362
  • [39] Detection of Distributed Denial of Service Attacks through a Combination of Machine Learning Algorithms over Software Defined Network Environment
    AlMomin, Hasen
    Ibrahim, Abdullahi Abdu
    2ND INTERNATIONAL CONGRESS ON HUMAN-COMPUTER INTERACTION, OPTIMIZATION AND ROBOTIC APPLICATIONS (HORA 2020), 2020, : 79 - 82
  • [40] Control Plane Packet-In Arrival Rate Analysis for Denial-of-Service Saturation Attacks Detection and Mitigation in Software-Defined Networks
    Fakhry Khellah
    Arabian Journal for Science and Engineering, 2019, 44 : 9349 - 9362