An SDN-based Decision Tree Detection (DTD) Model for Detecting DDoS Attacks in Cloud Environment

被引:0
|
作者
Praba, J. Jeba [1 ,2 ]
Sridaran, R. [3 ]
机构
[1] Christ Coll, Dept Comp Applicat, Rajkot, India
[2] Marwadi Univ, Rajkot, Gujarat, India
[3] Marwadi Univ, Fac Comp Applicat, Rajkot, Gujarat, India
关键词
-Distributed denial of service attack; greedy feature selection; decision tree algorithm; software defined networking; cloud and decision tree detection; MITIGATION;
D O I
10.14569/IJACSA.2022.0130708
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Detecting Distributed Denial of Service (DDoS) attacks has become a significant security issue for various network technologies. This attack has to be detected to increase the system's reliability. Though various traditional studies are present, they suffer from data shift issues and accuracy. Hence, this study intends to detect DDoS attacks by classifying the normal and malicious traffic. The study aims to solve the data shift issues by using the introduced Decision Tree Detection (DTD) model encompassing of Greedy Feature Selection (GFS) algorithm and Decision Tree Algorithm (DTA). It also attempts to enhance the proposed model's detection rate (accuracy) above 90%. Various processes are involved in DDoS attack detection. Initially, the gureKddcup dataset is loaded to perform pre-processing. This process is essential for removing noisy data. After this, feature selection is performed to select only the relevant features, removing the irrelevant data. This is then fed into the train and test split. Following this, Software Defined Networking (SDN) based DTA is used to classify the normal and malicious traffic, then given to the trained model for predicting this attack. Performance analysis is undertaken by comparing the proposed model with existing systems in terms of accuracy, MCC (Matthew's Correlation Coefficient), sensitivity, specificity, error rate, FAR (False Alarm Rate), and AUC (Area under Curve). This analysis is carried out to evaluate the efficacy of the proposed model, which is verified through the results.
引用
收藏
页码:54 / 64
页数:11
相关论文
共 50 条
  • [1] Detecting and Mitigating ARP Attacks in SDN-Based Cloud Environment
    Sun, Sixian
    Fu, Xiao
    Luo, Bin
    Du, Xiaojiang
    IEEE INFOCOM 2020 - IEEE CONFERENCE ON COMPUTER COMMUNICATIONS WORKSHOPS (INFOCOM WKSHPS), 2020, : 659 - 664
  • [2] Detecting and Preventing DDoS Attacks in SDN-Based Data Center Networks
    Lin, Po-Ching
    Hsu, Yu-Ting
    Hwang, Ren-Hung
    CLOUD COMPUTING AND SECURITY, PT II, 2017, 10603 : 50 - 61
  • [3] SDN-based detection and mitigation of DDoS attacks on smart homes
    Garba, Usman Haruna
    Toosi, Adel N.
    Pasha, Muhammad Fermi
    Khan, Suleman
    COMPUTER COMMUNICATIONS, 2024, 221 : 29 - 41
  • [4] SDN-Based Intrusion Detection System for Early Detection and Mitigation of DDoS Attacks
    Manso, Pedro
    Moura, Jose
    Serrao, Carlos
    INFORMATION, 2019, 10 (03)
  • [5] Detection of DDoS attacks in SDN-based VANET using optimized TabNet
    Setitra, Mohamed Ali
    Fan, Mingyu
    COMPUTER STANDARDS & INTERFACES, 2024, 90
  • [6] XGBoost Classifier for DDoS Attack Detection and Analysis in SDN-based Cloud
    Chen, Zhuo
    Jiang, Fu
    Cheng, Yijun
    Gu, Xin
    Liu, Weirong
    Peng, Jun
    2018 IEEE INTERNATIONAL CONFERENCE ON BIG DATA AND SMART COMPUTING (BIGCOMP), 2018, : 251 - 256
  • [7] Detecting DDoS Attacks in Cloud Computing Environment
    Lonea, A. M.
    Popescu, D. E.
    Tianfield, H.
    INTERNATIONAL JOURNAL OF COMPUTERS COMMUNICATIONS & CONTROL, 2013, 8 (01) : 70 - 78
  • [8] Flow-based Reconnaissance Attacks Detection in SDN-based Environment
    Alsaedi, Abdulmohsen
    Alshamrani, Adel
    Alharbi, Talal
    INTERNATIONAL JOURNAL OF COMPUTER SCIENCE AND NETWORK SECURITY, 2022, 22 (09): : 747 - 755
  • [9] A DDoS attacks traceback scheme for SDN-based smart city
    Chen, Wen
    Xiao, Suchao
    Liu, Leijie
    Jiang, Xueqin
    Tang, Zhangbin
    COMPUTERS & ELECTRICAL ENGINEERING, 2020, 81
  • [10] An SDN-based Approach For Defending Against Reflective DDoS Attacks
    Lukaseder, Thomas
    StOlzle, Kevin
    Kleber, Stephan
    Erb, Benjamin
    Kargl, Frank
    PROCEEDINGS OF THE 2018 IEEE 43RD CONFERENCE ON LOCAL COMPUTER NETWORKS (LCN), 2018, : 299 - 302