A SDN-based multiple mechanism DDoS attack detection trigger algorithm
A SDN-based multiple mechanism DDoS attack detection trigger algorithm
复制标题
一种基于SDN的多机制DDoS攻击检测触发算法
DOI:
10.1109/icuems50872.2020.00159
复制
发表时间:
2020
期刊:
影响因子:
--
通讯作者:
Xin
中科院分区:
文献类型:
--
作者:
Di Guo;Yongjun Wang;Xin
SDN controllers and switches are easy attacked by distributed denial of service (DDoS) attacks [1]. Generally, DDoS mainly attacks the flow table of the installed network switch,, causing overload, high network latency and consuming bandwidth. Based on the traditional detection methods, this paper proposes a lightweight solution, a multi threshold attack detection trigger mechanism based on parameter statistics, which effectively divides the packets sent to the network switch into detection and non-detection. The mechanism was evaluated on the relevant SDN test platform. All the results blow show that this algorithm can quickly start DDoS attack check system in a short time. By comparing the experiments result with other traditional proposed protection methods, we have proved that our algorithm is largely better at responding to DDoS attacks. Furthermore, compared with traditional periodic trigger detection and other trigger methods, our solution also has obvious advantages.