Loading…
Towards an Efficient DDoS Detection Scheme for Software-Defined Networks
Software-Defined Networks (SDN) are becoming a trending network technology in the modern Internet by splitting control and data planes and using a central controller. An SDN controller can be extended with application to provide flexible management of flows. This opens a great opportunity for implem...
Saved in:
Published in: | Revista IEEE América Latina 2018-08, Vol.16 (8), p.2296-2301 |
---|---|
Main Authors: | , |
Format: | Article |
Language: | eng ; por |
Subjects: | |
Citations: | Items that cite this one |
Online Access: | Get full text |
Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Summary: | Software-Defined Networks (SDN) are becoming a trending network technology in the modern Internet by splitting control and data planes and using a central controller. An SDN controller can be extended with application to provide flexible management of flows. This opens a great opportunity for implement new attacks' detection and mitigation inside SDN controller. Distributed Denial of Service (DDoS) attacks poses an immense threat to the Internet, and many defense approaches have been proposed. However, the prediction and prevention of DDoS attacks in SDN environments are a challenge. In this paper, we introduce a methodology to protect the network against DDoS attacks more effectively using statistical analysis on traffic entropy. In order to validate this proposal, a prototype was built in Mininet environment. The detection accuracy and performance have demonstrated the proposed scheme effectiveness. |
---|---|
ISSN: | 1548-0992 1548-0992 |
DOI: | 10.1109/TLA.2018.8528249 |