Skip to main content

2021 | OriginalPaper | Buchkapitel

PCA-Based DDoS Attack Detection of SDN Environments

verfasst von : Li-quan Han, Yue Zhang

Erschienen in: Big Data Analytics for Cyber-Physical System in Smart City

Verlag: Springer Singapore

Aktivieren Sie unsere intelligente Suche, um passende Fachinhalte oder Patente zu finden.

search-config
loading …

Abstract

Software defined networking, as a new network architecture, has the advantages of numerical control separation, open interfaces, and network virtualization. However, the new network architecture of SDN still faces the risk of being attacked by DDoS. DDoS attacks not only damage the hosts in the SDN network, but also have a serious impact on the entire SDN. This paper uses PCA to analyze network traffic and detect DDoS attacks. The experimental results show that PCA detection can detect DDoS attacks well.

Sie haben noch keine Lizenz? Dann Informieren Sie sich jetzt über unsere Produkte:

Springer Professional "Wirtschaft+Technik"

Online-Abonnement

Mit Springer Professional "Wirtschaft+Technik" erhalten Sie Zugriff auf:

  • über 102.000 Bücher
  • über 537 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Maschinenbau + Werkstoffe
  • Versicherung + Risiko

Jetzt Wissensvorsprung sichern!

Springer Professional "Technik"

Online-Abonnement

Mit Springer Professional "Technik" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 390 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Maschinenbau + Werkstoffe




 

Jetzt Wissensvorsprung sichern!

Springer Professional "Wirtschaft"

Online-Abonnement

Mit Springer Professional "Wirtschaft" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 340 Zeitschriften

aus folgenden Fachgebieten:

  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Versicherung + Risiko




Jetzt Wissensvorsprung sichern!

Literatur
2.
Zurück zum Zitat Kazemian, P., Chang, M., Zeng, H., et al.: Real time network policy checking using header space analysis. In: Presented as part of the 10th {USENIX} Symposium on Networked Systems Design and Implementation ({NSDI} 13), pp. 99–111 (2013) Kazemian, P., Chang, M., Zeng, H., et al.: Real time network policy checking using header space analysis. In: Presented as part of the 10th {USENIX} Symposium on Networked Systems Design and Implementation ({NSDI} 13), pp. 99–111 (2013)
3.
Zurück zum Zitat Khurshid, A., Zou, X., Zhou, W., et al.: Veriflow: verifying network-wide invariants in real time. In: Presented as part of the 10th {USENIX} Symposium on Networked Systems Design and Implementation ({NSDI} 13), pp. 15–27 (2013) Khurshid, A., Zou, X., Zhou, W., et al.: Veriflow: verifying network-wide invariants in real time. In: Presented as part of the 10th {USENIX} Symposium on Networked Systems Design and Implementation ({NSDI} 13), pp. 15–27 (2013)
4.
Zurück zum Zitat Porras, P., Shin, S., Yegneswaran, V., et al.: A security enforcement kernel for OpenFlow networks. In: Proceedings of the first workshop on Hot topics in Software Defined Networks,pp. 121–126 (2012) Porras, P., Shin, S., Yegneswaran, V., et al.: A security enforcement kernel for OpenFlow networks. In: Proceedings of the first workshop on Hot topics in Software Defined Networks,pp. 121–126 (2012)
5.
Zurück zum Zitat Shirali-Shahreza, S., Ganjali, Y.: Rewiflow: restricted wildcard openflowrules. ACM SIGCOMM Comput. Commun. Rev. 45(5), 29–35 (2015)CrossRef Shirali-Shahreza, S., Ganjali, Y.: Rewiflow: restricted wildcard openflowrules. ACM SIGCOMM Comput. Commun. Rev. 45(5), 29–35 (2015)CrossRef
6.
Zurück zum Zitat Yorozu, Y., Hirano, M., Oka, K., Tagawa, Y.: Electron spectroscopy studies on magneto-optical media and plastic substrate interface. IEEE Transl. J. Magn. Japan 2, 740–741 (1987)CrossRef Yorozu, Y., Hirano, M., Oka, K., Tagawa, Y.: Electron spectroscopy studies on magneto-optical media and plastic substrate interface. IEEE Transl. J. Magn. Japan 2, 740–741 (1987)CrossRef
7.
Zurück zum Zitat Wang, M., Zhou, H., Chen, J., et al.: An approach for protecting the openflow switch from the saturation attack. In: 2015 4th National Conference on Electrical, Electronics and Computer Engineering. Atlantis Press (2015) Wang, M., Zhou, H., Chen, J., et al.: An approach for protecting the openflow switch from the saturation attack. In: 2015 4th National Conference on Electrical, Electronics and Computer Engineering. Atlantis Press (2015)
8.
Zurück zum Zitat Garg G, Garg, R.: Detecting anomalies efficiently in SDN using adaptive mechanism. In: 2015 Fifth International Conference on Advanced Computing & Communication Technologies, pp. 367–370. IEEE (2015) Garg G, Garg, R.: Detecting anomalies efficiently in SDN using adaptive mechanism. In: 2015 Fifth International Conference on Advanced Computing & Communication Technologies, pp. 367–370. IEEE (2015)
9.
Zurück zum Zitat Hong, S., Xu, L., Wang, H., et al.: Poisoning network visibility in software-defined networks: new attacks and countermeasures. In: NDSS, vol. 15, pp. 8–11 (2015) Hong, S., Xu, L., Wang, H., et al.: Poisoning network visibility in software-defined networks: new attacks and countermeasures. In: NDSS, vol. 15, pp. 8–11 (2015)
10.
Zurück zum Zitat Dong, P., Du, X., Zhang, H., et al.: A detection method for a novel DDoS attack against SDN controllers by vast new low-traffic flows. In: 2016 IEEE International Conference on Communications (ICC), pp. 1–6. IEEE (2016) Dong, P., Du, X., Zhang, H., et al.: A detection method for a novel DDoS attack against SDN controllers by vast new low-traffic flows. In: 2016 IEEE International Conference on Communications (ICC), pp. 1–6. IEEE (2016)
11.
Zurück zum Zitat Mousavi, S.M., St-Hilaire, M.: Early detection of DDoS attacks against SDN controllers. In: 2015 International Conference on Computing, Networking and Communications (ICNC), pp. 77–81. IEEE (2015) Mousavi, S.M., St-Hilaire, M.: Early detection of DDoS attacks against SDN controllers. In: 2015 International Conference on Computing, Networking and Communications (ICNC), pp. 77–81. IEEE (2015)
Metadaten
Titel
PCA-Based DDoS Attack Detection of SDN Environments
verfasst von
Li-quan Han
Yue Zhang
Copyright-Jahr
2021
Verlag
Springer Singapore
DOI
https://doi.org/10.1007/978-981-33-4572-0_204

Premium Partner