服务拒绝攻击
计算机科学
应用层DDoS攻击
软件定义的网络
特里诺
前进飞机
计算机网络
计算机安全
OpenFlow
僵尸网络
互联网
网络数据包
操作系统
作者
I. Sumantra,S. Indira Gandhi
出处
期刊:2021 International Conference on System, Computation, Automation and Networking (ICSCAN)
日期:2020-07-03
卷期号:: 1-5
被引量:24
标识
DOI:10.1109/icscan49426.2020.9262408
摘要
This work aims to formulate an effective scheme which can detect and mitigate of Distributed Denial of Service (DDoS) attack in Software Defined Networks. Distributed Denial of Service attacks are one of the most destructive attacks in the internet. Whenever you heard of a website being hacked, it would have probably been a victim of a DDoS attack. A DDoS attack is aimed at disrupting the normal operation of a system by making service and resources unavailable to legitimate users by overloading the system with excessive superfluous traffic from distributed source. These distributed set of compromised hosts that performs the attack are referred as Botnet. Software Defined Networking being an emerging technology, offers a solution to reduce network management complexity. It separates the Control plane and the data plane. This decoupling provides centralized control of the network with programmability and flexibility. This work harness this programming ability and centralized control of SDN to obtain the randomness of the network flow data. This statistical approach utilizes the source IP in the network and various attributes of TCP flags and calculates entropy from them. The proposed technique can detect volume based and application based DDoS attacks like TCP SYN flood, Ping flood and Slow HTTP attacks. The methodology is evaluated through emulation using Mininet and Detection and mitigation strategies are implemented in POX controller. The experimental results show the proposed method have improved performance evaluation parameters including the Attack detection time, Delay to serve a legitimate request in the presence of attacker and overall CPU utilization.
科研通智能强力驱动
Strongly Powered by AbleSci AI