A Statistical Model for Early Detection of DDoS Attacks on Random Targets in SDN

被引:0
|
作者
Reza Bakhtiari Shohani
Seyedakbar Mostafavi
Vesal Hakami
机构
[1] Yazd University,Department of Computer Engineering
[2] Iran University of Science and Technology,Center of Excellence in Future Networks, School of Computer Engineering
来源
关键词
Distributed denial of service attack; Software-defined networks; Attack detection; Linear regression;
D O I
暂无
中图分类号
学科分类号
摘要
Software Defined Networks (SDNs) have accelerated and simplified the management, configuration and error detection in today’s networking systems. However, SDN is prone to some new security threats, the most important of which is its vulnerability to a new generation of Distributed Denial of Service (DDoS) attack in which fake packets target random destinations instead of targeting a single server. In this paper, we show that the existing early detection methods such as entropy- and principal component analysis (PCA)-based methods are not sufficiently capable of detecting this type of attack. Instead, we propose a novel network traffic anomaly detection framework for tackling with DDoS in SDN. Our framework consists of four stages: first, we draw on extensive experiments on an SDN test-bed to analyze the behavior of normal and attack traffic. Second, a statistical trapezoid model is proposed to estimate the number of table misses in the controller. Third, we estimate the threshold of the table misses in regular time intervals using linear regression together with EWMA estimation. In the last stage, we use the derived model as a reference to detect DDoS attacks as anomalous deviations. The evaluation results demonstrate that using this method, one can detect DDoS attacks against an SDN-based network in its early stages, with few false positives, and regardless of the specifics of the attack.
引用
收藏
页码:379 / 400
页数:21
相关论文
共 50 条
  • [21] A Review on Statistical Approaches for Anomaly Detection in DDoS Attacks
    Nooribakhsh, Mahsa
    Mollamotalebi, Mahdi
    INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2018, 12 (06): : 13 - 26
  • [22] SDN-Defend: A Lightweight Online Attack Detection and Mitigation System for DDoS Attacks in SDN
    Wang, Jin
    Wang, Liping
    SENSORS, 2022, 22 (21)
  • [23] DDOS attack detection in SDN: Method of attacks, detection techniques, challenges and research gaps
    Wabi, Abdullahi Aishatu
    Idris, Ismaila
    Olaniyi, Olayemi Mikail
    Ojeniyi, Joseph A.
    COMPUTERS & SECURITY, 2024, 139
  • [24] An SDN-based Decision Tree Detection (DTD) Model for Detecting DDoS Attacks in Cloud Environment
    Praba, J. Jeba
    Sridaran, R.
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2022, 13 (07) : 54 - 64
  • [25] Analysis of DDoS Attacks and an Introduction of a Hybrid Statistical Model to Detect DDoS Attacks on Cloud Computing Environment
    Girma, Anteneh
    Garuba, Moses
    Li, Jiang
    Liu, Chunmei
    2015 12TH INTERNATIONAL CONFERENCE ON INFORMATION TECHNOLOGY - NEW GENERATIONS, 2015, : 212 - 217
  • [26] Applying NFV/SDN in Mitigating DDoS Attacks
    Zhou, Luying
    Guo, Huaqun
    TENCON 2017 - 2017 IEEE REGION 10 CONFERENCE, 2017, : 2061 - 2066
  • [27] Detection and mitigation of DDoS attacks based on multi-dimensional characteristics in SDN
    Wang, Kun
    Fu, Yu
    Duan, Xueyuan
    Liu, Taotao
    SCIENTIFIC REPORTS, 2024, 14 (01):
  • [28] Detection of DDoS attacks in SDN-based VANET using optimized TabNet
    Setitra, Mohamed Ali
    Fan, Mingyu
    COMPUTER STANDARDS & INTERFACES, 2024, 90
  • [29] Detecting DDoS Attacks through AI driven SDN Intrusion Detection System
    Salatino, Francesco
    Spina, Mattia Giovanni
    Tropea, Mauro
    De Rango, Floriano
    2024 IEEE 21ST CONSUMER COMMUNICATIONS & NETWORKING CONFERENCE, CCNC, 2024, : 990 - 993
  • [30] A role-based statistical mechanism for DDoS attack detection in SDN
    Phan The Duy
    Do Thi Thu Hien
    Van-Hau Pham
    PROCEEDINGS OF 2018 5TH NAFOSTED CONFERENCE ON INFORMATION AND COMPUTER SCIENCE (NICS 2018), 2018, : 177 - 182