An Improved Method of DDoS Attack Detection for Controller of SDN

被引:0
|
作者
Sun, Wenwen [1 ]
Li, Yi [1 ]
Guan, Shaopeng [1 ]
机构
[1] Shandong Technol & Business Univ, Sch Informat & Elect Engn, Yantai, Peoples R China
关键词
SDN; DDoS; BiLSTM-RNN; attack detection;
D O I
10.1109/ccet48361.2019.8989356
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
For controllers of Software Defined Network (SDN), Distributed Denial of Service (DDoS) attacks are still the simplest and most effective way to attack. Aiming at this problem, a real-time DDoS detection attack method for SDN controller is proposed. The method first uses the entropy to detect whether the flow is abnormal. After the abnormal warning is issued, the flow entry of the OpenFlow switch is obtained, and the DDoS attack feature in the SDN environment is analyzed to extract important features related to the attack. The BiLSTM-RNN neural network algorithm is used to train the data set, and the BiLSTM model is generated to classify the real-time traffic to realize the DDoS attack detection. Experiments show that, compared with other methods, this method can efficiently implement DDoS attack traffic detection and reduce controller overhead in SDN environment.
引用
收藏
页码:249 / 253
页数:5
相关论文
共 50 条
  • [31] DDoS attack identification based on SDN
    Dobrin, Dobrev
    Dimiter, Avresky
    2021 IEEE 20TH INTERNATIONAL SYMPOSIUM ON NETWORK COMPUTING AND APPLICATIONS (NCA), 2021,
  • [32] DDoS Attack Detection and Classification Using Hybrid Model for Multicontroller SDN
    Gebremeskel, Tewelde Gebremedhin
    Gemeda, Ketema Adere
    Krishna, T. Gopi
    Ramulu, Perumalla Janaki
    Wireless Communications and Mobile Computing, 2023, 2023
  • [33] A role-based statistical mechanism for DDoS attack detection in SDN
    Phan The Duy
    Do Thi Thu Hien
    Van-Hau Pham
    PROCEEDINGS OF 2018 5TH NAFOSTED CONFERENCE ON INFORMATION AND COMPUTER SCIENCE (NICS 2018), 2018, : 177 - 182
  • [34] The Design of SDN based Detection for Distributed Denial of Service (DDoS) attack
    Oo, Myo Myint
    Kamolphiwong, Sinchai
    Kamolphiwong, Thossaporn
    2017 21ST INTERNATIONAL COMPUTER SCIENCE AND ENGINEERING CONFERENCE (ICSEC 2017), 2017, : 258 - 263
  • [35] DDoS Attack Detection Model Based on Information Entropy and DNN in SDN
    Zhang L.
    Wang J.
    Jisuanji Yanjiu yu Fazhan/Computer Research and Development, 2019, 56 (05): : 909 - 918
  • [36] DDoS Attack Detection and Mitigation Using SDN: Methods, Practices, and Solutions
    Narmeen Zakaria Bawany
    Jawwad A. Shamsi
    Khaled Salah
    Arabian Journal for Science and Engineering, 2017, 42 : 425 - 441
  • [37] DDoS Attack Detection and Mitigation Using SDN: Methods, Practices, and Solutions
    Bawany, Narmeen Zakaria
    Shamsi, Jawwad A.
    Salah, Khaled
    ARABIAN JOURNAL FOR SCIENCE AND ENGINEERING, 2017, 42 (02) : 425 - 441
  • [38] UDM: NFV-based prevention mechanism against DDoS attack on SDN controller
    Qian H.
    Xue H.
    Chen M.
    Tongxin Xuebao/Journal on Communications, 2019, 40 (03): : 116 - 124
  • [39] Detection MITM Attack in Multi-SDN Controller
    Sebbar, Anass
    Boulmalf, Mohammed
    Ech-Cherif El Kettani, Mohamed Dafir
    Baddi, Youssef
    2018 IEEE 5TH INTERNATIONAL CONGRESS ON INFORMATION SCIENCE AND TECHNOLOGY (IEEE CIST'18), 2018, : 583 - 587
  • [40] A novel ddos attack-aware smart backup controller placement in sdn design
    Haque M.R.
    Tan S.C.
    Yusoff Z.
    Nisar K.
    Lee C.K.
    Kaspin R.
    Chowdhry B.S.
    Ali S.
    Memon S.
    Annals of Emerging Technologies in Computing, 2020, 4 (05) : 75 - 92