Skip to main content
Top

2021 | OriginalPaper | Chapter

PCA-Based DDoS Attack Detection of SDN Environments

Authors : Li-quan Han, Yue Zhang

Published in: Big Data Analytics for Cyber-Physical System in Smart City

Publisher: Springer Singapore

Activate our intelligent search to find suitable subject content or patents.

search-config
loading …

Abstract

Software defined networking, as a new network architecture, has the advantages of numerical control separation, open interfaces, and network virtualization. However, the new network architecture of SDN still faces the risk of being attacked by DDoS. DDoS attacks not only damage the hosts in the SDN network, but also have a serious impact on the entire SDN. This paper uses PCA to analyze network traffic and detect DDoS attacks. The experimental results show that PCA detection can detect DDoS attacks well.

Dont have a licence yet? Then find out more about our products and how to get one now:

Springer Professional "Wirtschaft+Technik"

Online-Abonnement

Mit Springer Professional "Wirtschaft+Technik" erhalten Sie Zugriff auf:

  • über 102.000 Bücher
  • über 537 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Maschinenbau + Werkstoffe
  • Versicherung + Risiko

Jetzt Wissensvorsprung sichern!

Springer Professional "Technik"

Online-Abonnement

Mit Springer Professional "Technik" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 390 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Maschinenbau + Werkstoffe




 

Jetzt Wissensvorsprung sichern!

Springer Professional "Wirtschaft"

Online-Abonnement

Mit Springer Professional "Wirtschaft" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 340 Zeitschriften

aus folgenden Fachgebieten:

  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Versicherung + Risiko




Jetzt Wissensvorsprung sichern!

Literature
2.
go back to reference Kazemian, P., Chang, M., Zeng, H., et al.: Real time network policy checking using header space analysis. In: Presented as part of the 10th {USENIX} Symposium on Networked Systems Design and Implementation ({NSDI} 13), pp. 99–111 (2013) Kazemian, P., Chang, M., Zeng, H., et al.: Real time network policy checking using header space analysis. In: Presented as part of the 10th {USENIX} Symposium on Networked Systems Design and Implementation ({NSDI} 13), pp. 99–111 (2013)
3.
go back to reference Khurshid, A., Zou, X., Zhou, W., et al.: Veriflow: verifying network-wide invariants in real time. In: Presented as part of the 10th {USENIX} Symposium on Networked Systems Design and Implementation ({NSDI} 13), pp. 15–27 (2013) Khurshid, A., Zou, X., Zhou, W., et al.: Veriflow: verifying network-wide invariants in real time. In: Presented as part of the 10th {USENIX} Symposium on Networked Systems Design and Implementation ({NSDI} 13), pp. 15–27 (2013)
4.
go back to reference Porras, P., Shin, S., Yegneswaran, V., et al.: A security enforcement kernel for OpenFlow networks. In: Proceedings of the first workshop on Hot topics in Software Defined Networks,pp. 121–126 (2012) Porras, P., Shin, S., Yegneswaran, V., et al.: A security enforcement kernel for OpenFlow networks. In: Proceedings of the first workshop on Hot topics in Software Defined Networks,pp. 121–126 (2012)
5.
go back to reference Shirali-Shahreza, S., Ganjali, Y.: Rewiflow: restricted wildcard openflowrules. ACM SIGCOMM Comput. Commun. Rev. 45(5), 29–35 (2015)CrossRef Shirali-Shahreza, S., Ganjali, Y.: Rewiflow: restricted wildcard openflowrules. ACM SIGCOMM Comput. Commun. Rev. 45(5), 29–35 (2015)CrossRef
6.
go back to reference Yorozu, Y., Hirano, M., Oka, K., Tagawa, Y.: Electron spectroscopy studies on magneto-optical media and plastic substrate interface. IEEE Transl. J. Magn. Japan 2, 740–741 (1987)CrossRef Yorozu, Y., Hirano, M., Oka, K., Tagawa, Y.: Electron spectroscopy studies on magneto-optical media and plastic substrate interface. IEEE Transl. J. Magn. Japan 2, 740–741 (1987)CrossRef
7.
go back to reference Wang, M., Zhou, H., Chen, J., et al.: An approach for protecting the openflow switch from the saturation attack. In: 2015 4th National Conference on Electrical, Electronics and Computer Engineering. Atlantis Press (2015) Wang, M., Zhou, H., Chen, J., et al.: An approach for protecting the openflow switch from the saturation attack. In: 2015 4th National Conference on Electrical, Electronics and Computer Engineering. Atlantis Press (2015)
8.
go back to reference Garg G, Garg, R.: Detecting anomalies efficiently in SDN using adaptive mechanism. In: 2015 Fifth International Conference on Advanced Computing & Communication Technologies, pp. 367–370. IEEE (2015) Garg G, Garg, R.: Detecting anomalies efficiently in SDN using adaptive mechanism. In: 2015 Fifth International Conference on Advanced Computing & Communication Technologies, pp. 367–370. IEEE (2015)
9.
go back to reference Hong, S., Xu, L., Wang, H., et al.: Poisoning network visibility in software-defined networks: new attacks and countermeasures. In: NDSS, vol. 15, pp. 8–11 (2015) Hong, S., Xu, L., Wang, H., et al.: Poisoning network visibility in software-defined networks: new attacks and countermeasures. In: NDSS, vol. 15, pp. 8–11 (2015)
10.
go back to reference Dong, P., Du, X., Zhang, H., et al.: A detection method for a novel DDoS attack against SDN controllers by vast new low-traffic flows. In: 2016 IEEE International Conference on Communications (ICC), pp. 1–6. IEEE (2016) Dong, P., Du, X., Zhang, H., et al.: A detection method for a novel DDoS attack against SDN controllers by vast new low-traffic flows. In: 2016 IEEE International Conference on Communications (ICC), pp. 1–6. IEEE (2016)
11.
go back to reference Mousavi, S.M., St-Hilaire, M.: Early detection of DDoS attacks against SDN controllers. In: 2015 International Conference on Computing, Networking and Communications (ICNC), pp. 77–81. IEEE (2015) Mousavi, S.M., St-Hilaire, M.: Early detection of DDoS attacks against SDN controllers. In: 2015 International Conference on Computing, Networking and Communications (ICNC), pp. 77–81. IEEE (2015)
Metadata
Title
PCA-Based DDoS Attack Detection of SDN Environments
Authors
Li-quan Han
Yue Zhang
Copyright Year
2021
Publisher
Springer Singapore
DOI
https://doi.org/10.1007/978-981-33-4572-0_204

Premium Partner