Entropy-based approach to detect DDoS attacks on software defined networking controller

18Citations
Citations of this article
32Readers
Mendeley users who have this article in their library.

Abstract

The Software-Defined Networking (SDN) technology improves network management over existing technology via centralized network control. The SDN provides a perfect platform for researchers to solve traditional network’s outstanding issues. However, despite the advantages of centralized control, concern about its security is rising. The more traditional network switched to SDN technology, the more attractive it becomes to malicious actors, especially the controller, because it is the network’s brain. A Distributed Denial of Service (DDoS) attack on the controller could cripple the entire network. For that reason, researchers are always looking for ways to detect DDoS attacks against the controller with higher accuracy and lower false-positive rate. This paper proposes an entropy-based approach to detect low-rate and high-rate DDoS attacks against the SDN controller, regardless of the number of attackers or targets. The proposed approach generalized the Rényi joint entropy for analyzing the network traffic flow to detect DDoS attack traffic flow of varying rates. Using two packet header features and generalized Rényi joint entropy, the proposed approach achieved a better detection rate than the EDDSC approach that uses Shannon entropy metrics.

References Powered by Scopus

Security in Software Defined Networks: A Survey

412Citations
N/AReaders
Get full text

A survey of security in software defined networks

402Citations
N/AReaders
Get full text

Software-Defined Networking: A survey

300Citations
N/AReaders
Get full text

Cited by Powered by Scopus

Renyi Joint Entropy-Based Dynamic Threshold Approach to Detect DDoS Attacks against SDN Controller with Various Traffic Rates

31Citations
N/AReaders
Get full text

Effectiveness of an Entropy-Based Approach for Detecting Low- and High-Rate DDoS Attacks against the SDN Controller: Experimental Analysis

25Citations
N/AReaders
Get full text

FL-CTIF: A federated learning based CTI framework based on information fusion for secure IIoT

17Citations
N/AReaders
Get full text

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Cite

CITATION STYLE

APA

Aladaileh, M., Anbar, M., Hasbullah, I. H., Sanjalawe, Y. K., & Chong, Y. W. (2021). Entropy-based approach to detect DDoS attacks on software defined networking controller. Computers, Materials and Continua, 69(1), 373–391. https://doi.org/10.32604/cmc.2021.017972

Readers' Seniority

Tooltip

Lecturer / Post doc 6

55%

PhD / Post grad / Masters / Doc 4

36%

Researcher 1

9%

Readers' Discipline

Tooltip

Computer Science 9

69%

Business, Management and Accounting 2

15%

Veterinary Science and Veterinary Medic... 1

8%

Materials Science 1

8%

Article Metrics

Tooltip
Social Media
Shares, Likes & Comments: 1

Save time finding and organizing research with Mendeley

Sign up for free