基于多控制器的软件定义网络DDoS攻击检测

Parisa Valizadeh, Ahmad Taghinezhad-Niar
{"title":"基于多控制器的软件定义网络DDoS攻击检测","authors":"Parisa Valizadeh, Ahmad Taghinezhad-Niar","doi":"10.1109/ICWR54782.2022.9786246","DOIUrl":null,"url":null,"abstract":"With the rapid growth of computer devices, network communication faced different challenges from network management to traffic engineering. Software-Defined Networking (SDN) is a well-known solution for optimizing these communications. SDN is a new networking architecture to simplify network management that separates the control plane from the data plane. The central controller is the major advantage of SDN; however, it has security vulnerabilities such as being unreachable in Distributed Denial-of-Service attacks (DDoS). Consequently, it is very important to protect SDN from DDoS attacks. In this paper, we proposed an algorithm for DDoS attack detection and reducing its impact in SDN architecture with multiple distributed controllers. We presented two methods 1) the entropy of destination IP addresses and 2) Packet window initiation rate for early detection of DDoS. We used Mininet and floodlight to simulate our algorithm in different scenarios. The result shows that our algorithm outperforms other works in various network configurations and multi-victim attacks.","PeriodicalId":355187,"journal":{"name":"2022 8th International Conference on Web Research (ICWR)","volume":"1 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2022-05-11","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"2","resultStr":"{\"title\":\"DDoS Attacks Detection in Multi-Controller Based Software Defined Network\",\"authors\":\"Parisa Valizadeh, Ahmad Taghinezhad-Niar\",\"doi\":\"10.1109/ICWR54782.2022.9786246\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"With the rapid growth of computer devices, network communication faced different challenges from network management to traffic engineering. Software-Defined Networking (SDN) is a well-known solution for optimizing these communications. SDN is a new networking architecture to simplify network management that separates the control plane from the data plane. The central controller is the major advantage of SDN; however, it has security vulnerabilities such as being unreachable in Distributed Denial-of-Service attacks (DDoS). Consequently, it is very important to protect SDN from DDoS attacks. In this paper, we proposed an algorithm for DDoS attack detection and reducing its impact in SDN architecture with multiple distributed controllers. We presented two methods 1) the entropy of destination IP addresses and 2) Packet window initiation rate for early detection of DDoS. We used Mininet and floodlight to simulate our algorithm in different scenarios. The result shows that our algorithm outperforms other works in various network configurations and multi-victim attacks.\",\"PeriodicalId\":355187,\"journal\":{\"name\":\"2022 8th International Conference on Web Research (ICWR)\",\"volume\":\"1 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2022-05-11\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"2\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2022 8th International Conference on Web Research (ICWR)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ICWR54782.2022.9786246\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2022 8th International Conference on Web Research (ICWR)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICWR54782.2022.9786246","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 2

摘要

随着计算机设备的快速增长,网络通信面临着从网络管理到流量工程的不同挑战。软件定义网络(SDN)是优化这些通信的知名解决方案。SDN是一种简化网络管理的新型网络架构,将控制平面与数据平面分离。中央控制器是SDN的主要优点;然而,它存在安全漏洞,例如在分布式拒绝服务攻击(DDoS)中无法访问。因此,保护SDN免受DDoS攻击是非常重要的。在本文中,我们提出了一种算法来检测DDoS攻击,并减少其在具有多个分布式控制器的SDN架构中的影响。我们提出了两种方法(1)目的IP地址熵和2)分组窗口起始率来早期检测DDoS。我们使用Mininet和泛光灯在不同的场景中模拟我们的算法。结果表明,该算法在各种网络配置和多目标攻击中都优于其他算法。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
DDoS Attacks Detection in Multi-Controller Based Software Defined Network
With the rapid growth of computer devices, network communication faced different challenges from network management to traffic engineering. Software-Defined Networking (SDN) is a well-known solution for optimizing these communications. SDN is a new networking architecture to simplify network management that separates the control plane from the data plane. The central controller is the major advantage of SDN; however, it has security vulnerabilities such as being unreachable in Distributed Denial-of-Service attacks (DDoS). Consequently, it is very important to protect SDN from DDoS attacks. In this paper, we proposed an algorithm for DDoS attack detection and reducing its impact in SDN architecture with multiple distributed controllers. We presented two methods 1) the entropy of destination IP addresses and 2) Packet window initiation rate for early detection of DDoS. We used Mininet and floodlight to simulate our algorithm in different scenarios. The result shows that our algorithm outperforms other works in various network configurations and multi-victim attacks.
求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信