Syn flooding attack detection and mitigation in SDN

0Citations
Citations of this article
12Readers
Mendeley users who have this article in their library.

Abstract

Software-defined networking separates network architecture into logical control layer and data forwarding layer with the aim of providing high flexibility, agility, and security. Although it manages the whole network from the controller with the ease of programmability, many security issues still exist in SDN architecture. Attacker's target can be at the various layers of SDN by DDoS attack. Defining threshold in detection and mitigation of the attack is one of the most important issues. Existing researches emphasize the detection of DDoS attack with various mechanisms in SDN infrastructure. This paper provides a simple mechanism for both detection and mitigation of common type of DDoS attack, SYN flooding attack via sFlow analyzer with dynamic threshold calculated by using adaptive threshold algorithm. It uses own generated network traffic consisting both normal and attack traffic and shows that how the calculated dynamic threshold adapts the incoming traffic. It also evaluates the performance of the detection and mitigation mechanism by detection rate, false alarm rate, false negative rate, and accuracy in order to prove our proposed systemcan timely detect and reasonably mitigate DDoS attack.

Cite

CITATION STYLE

APA

Oo, N. H., & Maw, A. H. (2019). Syn flooding attack detection and mitigation in SDN. In Proceedings of 2019 the 9th International Workshop on Computer Science and Engineering, WCSE 2019 SPRING (pp. 126–131). International Workshop on Computer Science and Engineering (WCSE). https://doi.org/10.18178/wcse.2019.03.022

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free