Collaborative Defense Against Hybrid Network Attacks by SDN Controllers and P4 Switches

服务拒绝攻击 网络数据包 前进飞机 计算机科学 控制器(灌溉) 计算机网络 应用层DDoS攻击 软件定义的网络 计算机安全 互联网 万维网 农学 生物
作者
You‐Chiun Wang,Pin-Yu Su
出处
期刊:IEEE Transactions on Network Science and Engineering [Institute of Electrical and Electronics Engineers]
卷期号:11 (2): 1480-1495 被引量:3
标识
DOI:10.1109/tnse.2023.3324329
摘要

Software-defined networking (SDN) uses a controller to manage the network. Applying SDN to resist distributed denial-of-service flood (DDoS-F) attacks receives attention. A controller identifies attack flows and gives rules to switches to discard attack packets. Doing so may cause the controller to be busy and impact SDN performance. P4 switches, on the other hand, can recognize DDoS-F attacks without controller involvement. However, some non-DDoS attacks like keylogging and data theft cannot be well identified by P4 switches due to their local views. Thus, the article makes the controller and P4 switches cooperate to defend against hybrid network attacks that include both DDoS-F attacks and non-DDoS attacks. To this end, we propose a collaborative defense by control and data planes (CD2P) framework. P4 switches (i.e., data plane) find DDoS-F packets by using an entropy-aware detection scheme that can adjust thresholds based on the network status. They also report flow information (excluding DDoS-F flows) to the controller. With the deep learning technique, the controller (i.e., control plane) analyzes these reports to discover non-DDoS attacks. Hence, the controller can focus on detecting these attacks without the disturbance of many DDoS-F packets. Experimental results reveal that CD2P can quickly block DDoS-F attacks and better identify keylogging and data theft. Our contribution is to propose a novel framework for the controller and P4 switches to collaborate to defend against hybrid network attacks efficiently.
最长约 10秒,即可获得该文献文件

科研通智能强力驱动
Strongly Powered by AbleSci AI
更新
PDF的下载单位、IP信息已删除 (2025-6-4)

科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
VDC应助zzzxhhr采纳,获得30
刚刚
夏眠完成签到,获得积分10
1秒前
科研通AI5应助LINGO采纳,获得10
1秒前
在水一方应助伶俐的月亮采纳,获得10
1秒前
2秒前
爱笑舞蹈发布了新的文献求助10
2秒前
ljy完成签到 ,获得积分10
2秒前
小吕完成签到 ,获得积分10
2秒前
zyyyyyyyy完成签到 ,获得积分10
2秒前
3秒前
3秒前
3秒前
elevennn完成签到,获得积分20
3秒前
4秒前
小蘑菇应助jw采纳,获得10
4秒前
可爱的函函应助勤劳夕阳采纳,获得10
4秒前
小蘑菇应助小飞侠来咯采纳,获得10
4秒前
LJC完成签到,获得积分10
4秒前
lss8完成签到 ,获得积分10
4秒前
邓佳鑫Alan给研友_nxer7Z的求助进行了留言
4秒前
叹千泠完成签到,获得积分10
4秒前
4秒前
Akim应助大宝剑2号采纳,获得10
5秒前
任性访风完成签到,获得积分10
5秒前
Ava应助zhangjin2969采纳,获得10
5秒前
董春伟完成签到,获得积分10
6秒前
6秒前
MiaQ发布了新的文献求助10
6秒前
LioXH发布了新的文献求助10
6秒前
小二郎应助zzsj采纳,获得10
6秒前
斯文败类应助大胆峻熙采纳,获得10
7秒前
刘明生发布了新的文献求助10
7秒前
YCG完成签到 ,获得积分10
8秒前
8秒前
ArKye发布了新的文献求助10
8秒前
量子星尘发布了新的文献求助100
8秒前
lyra发布了新的文献求助10
8秒前
anna发布了新的文献求助10
8秒前
猪猪hero发布了新的文献求助10
9秒前
tinghai86完成签到,获得积分10
9秒前
高分求助中
(应助此贴封号)【重要!!请各用户(尤其是新用户)详细阅读】【科研通的精品贴汇总】 10000
Acute Mountain Sickness 2000
A novel angiographic index for predicting the efficacy of drug-coated balloons in small vessels 500
Textbook of Neonatal Resuscitation ® 500
Thomas Hobbes' Mechanical Conception of Nature 500
The Affinity Designer Manual - Version 2: A Step-by-Step Beginner's Guide 500
Affinity Designer Essentials: A Complete Guide to Vector Art: Your Ultimate Handbook for High-Quality Vector Graphics 500
热门求助领域 (近24小时)
化学 医学 生物 材料科学 工程类 有机化学 内科学 生物化学 物理 计算机科学 纳米技术 遗传学 基因 复合材料 化学工程 物理化学 病理 催化作用 免疫学 量子力学
热门帖子
关注 科研通微信公众号,转发送积分 5097403
求助须知:如何正确求助?哪些是违规求助? 4309929
关于积分的说明 13428703
捐赠科研通 4137399
什么是DOI,文献DOI怎么找? 2266602
邀请新用户注册赠送积分活动 1269747
关于科研通互助平台的介绍 1206069