SDNScore: A Statistical Defense Mechanism Against DDoS Attacks in SDN Environment

dc.authorid0000-0002-3105-4904
dc.contributor.authorKalkan, Kubra
dc.contributor.authorGur, Gurkan
dc.contributor.authorAlagoz, Fatih
dc.date.accessioned2025-05-10T19:28:51Z
dc.date.issued2017
dc.departmentİstanbul Medeniyet Üniversitesi
dc.descriptionIEEE Symposium on Computers and Communications (ISCC) -- JUL 03-07, 2017 -- Heraklion, GREECE
dc.description.abstractSoftware Defined Networking (SDN) is a promising solution for addressing challenges of future networks. Despite its advantages such as flexibility, simplification and low costs, it has several drawbacks that are largely induced by the centralized control paradigm. Security is one of the most significant challenges related to centralization. In that regard, Distributed Denial of Service (DDoS) attacks pose crucial security questions in software-defined networks. In SDN architecture, switches send all packets to the controller if they do not have any applicable rules in their flow tables. Basically, controller is the key place that can take initiative in decisions. However, this characteristic results in large communication overhead and delay until a DDoS attack is detected and an appropriate action is activated against attack packets. Therefore, in this work we propose a hybrid mechanism, namely SDNScore, where switches are not simply data forwarders. Instead, they can collect statistics and decide if DDoS attack is in action. Then they coordinate with the controller and act on attack packets in cooperation. SDNScore is a statistical and packet-based defense mechanism against DDoS attacks in SDN environment. Since it has a statistical scoring method, it can detect not only known but also unknown attacks entailing packets that are alike in terms of TCP and IP layer properties. In addition, it does not drop all packets in a flow which includes both attack and legal packets, but rather filters out attack packets using packet-based analysis.
dc.description.sponsorshipTurkish State Planning Organization (DPT) under the TAM Project [2007K12061O]; Scientific and Technical Research Council of Turkey (TUBITAK) [117E165]
dc.description.sponsorshipThis work was supported in part by the Scientific and Technical Research Council of Turkey (TUBITAK) under grant number 117E165 and in part by the Turkish State Planning Organization (DPT) under the TAM Project, number 2007K12061O.
dc.identifier.endpage675
dc.identifier.isbn978-1-5386-1629-1
dc.identifier.issn1530-1346
dc.identifier.scopus2-s2.0-85030554390
dc.identifier.scopusqualityQ2
dc.identifier.startpage669
dc.identifier.urihttps://hdl.handle.net/20.500.14730/7484
dc.identifier.wosWOS:000426895800111
dc.identifier.wosqualityN/A
dc.indekslendigikaynakWeb of Science
dc.indekslendigikaynakScopus
dc.language.isoen
dc.publisherIeee
dc.relation.ispartof2017 Ieee Symposium On Computers and Communications (Iscc)
dc.relation.publicationcategoryKonferans Öğesi - Uluslararası - Kurum Öğretim Elemanı
dc.rightsinfo:eu-repo/semantics/closedAccess
dc.snmzKA_WOS_20250302
dc.subjectSDN
dc.subjectnetwork security
dc.subjectDDoS
dc.subjectfiltering
dc.subjectdefense mechanism
dc.titleSDNScore: A Statistical Defense Mechanism Against DDoS Attacks in SDN Environment
dc.typeConference Object

Dosyalar

Orijinal paket

Listeleniyor 1 - 1 / 1
Yükleniyor...
Küçük Resim
İsim:
7484.pdf
Boyut:
600.76 KB
Biçim:
Adobe Portable Document Format