2020
DOI: 10.1109/access.2020.3021435
|View full text |Cite
|
Sign up to set email alerts
|

A New Framework for DDoS Attack Detection and Defense in SDN Environment

Abstract: While software defined network (SDN) brings more innovation to the development of future networks, it also faces a more severe threat from DDoS attacks. In order to deal with the single point of failure on SDN controller caused by DDoS attacks, we propose a framework for detection and defense of DDoS attacks in the SDN environment. Firstly, we deploy a trigger mechanism of DDoS attack detection on data plane to screen for abnormal flows in the network. Then, we use a combined machine learning algorithm based o… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1
1
1
1

Citation Types

0
47
0
2

Year Published

2021
2021
2024
2024

Publication Types

Select...
6
1
1

Relationship

0
8

Authors

Journals

citations
Cited by 116 publications
(49 citation statements)
references
References 38 publications
0
47
0
2
Order By: Relevance
“…SDN can be enhanced to fog computing and it is programmable. It is used as a framework for flow-based anomaly detection but still, it needs intelligence to avoid attacks presented by Tan et al [1]. e attack packet is classified by the use of Machine Learning (ML) in SDN environment by Santos et al [2].…”
Section: Introductionmentioning
confidence: 99%
“…SDN can be enhanced to fog computing and it is programmable. It is used as a framework for flow-based anomaly detection but still, it needs intelligence to avoid attacks presented by Tan et al [1]. e attack packet is classified by the use of Machine Learning (ML) in SDN environment by Santos et al [2].…”
Section: Introductionmentioning
confidence: 99%
“…Tan et al [234] suggest a hybrid DDoS detection trigger mechanism by merging K-Means and KNN on the SDN data plane. This technique counts the rate at which packet_in messages are sent on switches by utilizing the CPU resources of the switches.…”
Section: Hybrid Models Based Ids In Sdnmentioning
confidence: 99%
“…As a result, another open issue is using multiple physical computers to evaluate suggested security measures in the SDN paradigm. The Mininet emulator was used to replicate and test the majority of the reviewed ML-DL-based IDS solutions, such as [167], [171], [189], [191], [234], [246]. On the one hand, a Mininet simulator makes prototyping an SDN easier and may be used to illustrate the concept of the proposed system.…”
Section: Bottleneck Creation Due To Lack Of Scalability Evaluation and Testingmentioning
confidence: 99%
See 1 more Smart Citation
“…Other papers have addressed attacks detection in the specific context of SDN, such as [22][23][24][25][26][27][28][29][30][31][32][33], and [34].…”
Section: Related Workmentioning
confidence: 99%