Chen Runze, Ruan Fangming, Li Yidan, Yin Lan, Chen Yanli
{"title":"一种基于SDN的简单DDoS防御方法","authors":"Chen Runze, Ruan Fangming, Li Yidan, Yin Lan, Chen Yanli","doi":"10.1109/asid52932.2021.9651724","DOIUrl":null,"url":null,"abstract":"DDoS attacks have been one of the major threats to the Internet since their emergence. With the rapid development of the Internet, the number of network users is increasing rapidly. Thus, the existing network based on TCP\\IP protocol is increasingly complex and rigid; it is difficult to add new functions, which greatly restricts the development of network technology. The emergence of SDN provides a feasible solution to the severe problems faced by the existing network. At the same time, it also provides a new technology to solve the problem of DDoS attack in the traditional network. In this paper, a simple SDN architecture was built on the network simulation platform of Mininet. The host launched ping flood attack, and the controller was used to control the delivery flow meter to suppress DDoS attack traffic, which achieved a good defense effect. Keywords–Network security; DDoS attack; Software defined network; The controller","PeriodicalId":150884,"journal":{"name":"2021 IEEE 15th International Conference on Anti-counterfeiting, Security, and Identification (ASID)","volume":null,"pages":null},"PeriodicalIF":0.0000,"publicationDate":"2021-10-29","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"3","resultStr":"{\"title\":\"A Simple DDoS Defense Method Based SDN\",\"authors\":\"Chen Runze, Ruan Fangming, Li Yidan, Yin Lan, Chen Yanli\",\"doi\":\"10.1109/asid52932.2021.9651724\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"DDoS attacks have been one of the major threats to the Internet since their emergence. With the rapid development of the Internet, the number of network users is increasing rapidly. Thus, the existing network based on TCP\\\\IP protocol is increasingly complex and rigid; it is difficult to add new functions, which greatly restricts the development of network technology. The emergence of SDN provides a feasible solution to the severe problems faced by the existing network. At the same time, it also provides a new technology to solve the problem of DDoS attack in the traditional network. In this paper, a simple SDN architecture was built on the network simulation platform of Mininet. The host launched ping flood attack, and the controller was used to control the delivery flow meter to suppress DDoS attack traffic, which achieved a good defense effect. Keywords–Network security; DDoS attack; Software defined network; The controller\",\"PeriodicalId\":150884,\"journal\":{\"name\":\"2021 IEEE 15th International Conference on Anti-counterfeiting, Security, and Identification (ASID)\",\"volume\":null,\"pages\":null},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2021-10-29\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"3\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2021 IEEE 15th International Conference on Anti-counterfeiting, Security, and Identification (ASID)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/asid52932.2021.9651724\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2021 IEEE 15th International Conference on Anti-counterfeiting, Security, and Identification (ASID)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/asid52932.2021.9651724","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
DDoS attacks have been one of the major threats to the Internet since their emergence. With the rapid development of the Internet, the number of network users is increasing rapidly. Thus, the existing network based on TCP\IP protocol is increasingly complex and rigid; it is difficult to add new functions, which greatly restricts the development of network technology. The emergence of SDN provides a feasible solution to the severe problems faced by the existing network. At the same time, it also provides a new technology to solve the problem of DDoS attack in the traditional network. In this paper, a simple SDN architecture was built on the network simulation platform of Mininet. The host launched ping flood attack, and the controller was used to control the delivery flow meter to suppress DDoS attack traffic, which achieved a good defense effect. Keywords–Network security; DDoS attack; Software defined network; The controller