A SDN-based multiple mechanism DDoS attack detection trigger algorithm

A SDN-based multiple mechanism DDoS attack detection trigger algorithm
复制标题

一种基于SDN的多机制DDoS攻击检测触发算法

DOI:
10.1109/icuems50872.2020.00159
复制
发表时间:
2020
期刊:
2020 International Conference on Urban Engineering and Management Science (ICUEMS)
影响因子:
--
通讯作者:
Xin
Xin
中科院分区:
--
文献类型:
--
作者:
Di Guo;Yongjun Wang;Xin

文献摘要

被引文献

相似文献

SDN控制器和交换机很容易受到分布式拒绝服务(DDoS)攻击[1]。DDoS攻击主要攻击已安装网络交换机的流表,造成网络过载、网络延迟高、带宽消耗大。本文在传统检测方法的基础上,提出了一种轻量级的解决方案--基于参数统计的多阈值攻击检测触发机制,有效地将发送到网络交换机的数据包分为可检测和不可检测两类。该机制在相关SDN测试平台上进行了评估。实验结果表明,该算法能够在较短的时间内快速启动DDoS攻击检测系统。通过与其他传统的保护方法的实验结果进行比较,我们已经证明了我们的算法是在响应DDoS攻击大大优于。此外,与传统的周期性触发检测和其他触发方法相比,我们的解决方案也有明显的优势。
SDN controllers and switches are easy attacked by distributed denial of service (DDoS) attacks [1]. Generally, DDoS mainly attacks the flow table of the installed network switch,, causing overload, high network latency and consuming bandwidth. Based on the traditional detection methods, this paper proposes a lightweight solution, a multi threshold attack detection trigger mechanism based on parameter statistics, which effectively divides the packets sent to the network switch into detection and non-detection. The mechanism was evaluated on the relevant SDN test platform. All the results blow show that this algorithm can quickly start DDoS attack check system in a short time. By comparing the experiments result with other traditional proposed protection methods, we have proved that our algorithm is largely better at responding to DDoS attacks. Furthermore, compared with traditional periodic trigger detection and other trigger methods, our solution also has obvious advantages.