Traffic Monitoring and DDoS Detection using Stateful SDN

被引:0
|
作者
Rebecchi, Filippo [1 ]
Boite, Julien [1 ]
Nardin, Pierre-Alexis [1 ]
Bouet, Mathieu [1 ]
Conan, Vania [1 ]
机构
[1] Thales Commun & Secur, Gennevilliers, France
关键词
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
We propose to showcase the benefits of stateful SDN in the context of DDoS detection and mitigation. By delegating some local tasks to the switch rather than relying always on the controller, it is possible to monitor data-plane traffic efficiently and to detect malicious network behaviours with high accuracy. Stateful SDN concepts are employed both to improve reactivity and to offload the controller and the control channel by delegating local treatments down to the switches. The demo illustrates how to protect end-hosts from Distributed Denial of Service (DDoS) attacks. Our approach, named StateSec, is built on advanced in-switch processing capabilities to detect and mitigate threats swiftly. StateSec relies on a detection loop to: 1) match and count a configurable set of traffic features (e.g., IP source and destination, port source and destination) without resorting to the controller; 2) use an entropy-based detection algorithm with such monitored features, 3) detect several threats such as (D) DoS and port scans with high accuracy, and 4) take countermeasures by installing OpenFlow rules at the switch.
引用
收藏
页数:2
相关论文
共 50 条
  • [1] Monitoring DDoS by Using SDN
    Liu, Chung-Hsin
    Yeh, Yen-Te
    JOURNAL OF INTERNET TECHNOLOGY, 2016, 17 (02): : 341 - 348
  • [2] A DDoS Attack Detection Method Using Conditional Entropy Based on SDN Traffic
    Tian, Qiwen
    Miyata, Sumiko
    IOT, 2023, 4 (02): : 95 - 111
  • [3] Detection and Mitigation of DoS and DDoS Attacks in IoT-Based Stateful SDN: An Experimental Approach
    Galeano-Brajones, Jesus
    Carmona-Murillo, Javier
    Valenzuela-Valdes, Juan F.
    Luna-Valero, Francisco
    SENSORS, 2020, 20 (03)
  • [4] DDoS attack traffic classification in SDN using deep learning
    Ahuja N.
    Mukhopadhyay D.
    Singal G.
    Personal and Ubiquitous Computing, 2024, 28 (02) : 417 - 429
  • [5] DOCUS-DDoS detection in SDN using modified CUSUM with flash traffic discrimination and mitigation
    Shalini, P. V.
    Radha, V.
    Sanjeevi, Sriram G.
    COMPUTER NETWORKS, 2022, 217
  • [6] Traffic Management Applications for Stateful SDN Data Plane
    Cascone, Carmelo
    Pollini, Luca
    Sanvito, Davide
    Capone, Antonio
    2015 FOURTH EUROPEAN WORKSHOP ON SOFTWARE DEFINED NETWORKS - EWSDN 2015, 2015, : 85 - 90
  • [7] ARDefense: DDoS detection and prevention using NFV and SDN
    Singh, Arran Kumar
    Jaiswal, Raj K.
    Abdukodir, Khakimov
    Muthanna, Ammar
    2020 12TH INTERNATIONAL CONGRESS ON ULTRA MODERN TELECOMMUNICATIONS AND CONTROL SYSTEMS AND WORKSHOPS (ICUMT 2020), 2020, : 236 - 241
  • [8] Detection of DDoS Attack Using SDN in IoT: A Survey
    Pajila, P. J. Beslin
    Julie, E. Golden
    INTELLIGENT COMMUNICATION TECHNOLOGIES AND VIRTUAL MOBILE NETWORKS, ICICV 2019, 2020, 33 : 438 - 452
  • [9] DDoS Detection in SDN using Machine Learning Techniques
    Nadeem, Muhammad Waqas
    Goh, Hock Guan
    Ponnusamy, Vasaki
    Aun, Yichiet
    CMC-COMPUTERS MATERIALS & CONTINUA, 2022, 71 (01): : 771 - 789
  • [10] Detection and mitigation of DDoS in SDN
    Pande, Bhavika
    Bhagat, Gargi
    Priya, Shanu
    Agrawal, Himanshu
    2018 ELEVENTH INTERNATIONAL CONFERENCE ON CONTEMPORARY COMPUTING (IC3), 2018, : 371 - 373