A Network Segmentation Architecture for Flow Aggregation and DDoS Mitigation in SDN Using RAPID Flow Rules

计算机科学 服务拒绝攻击 计算机网络 流量(数学) 建筑 流量网络 分割 分布式计算 人工智能 操作系统 互联网 几何学 数学 数学优化 艺术 视觉艺术
作者
. Himanshu,Kalpana Saha,Payel Das,Swades De
标识
DOI:10.1145/3631461.3631561
摘要

Distributed Denial-of-Service (DDoS) attacks have always posed a major threat to networks directly or as a cover for more sophisticated attacks. In recent years, with advances such as the large number of IoT nodes, amplifying platforms like Botnets-as-a-Service, etc., the number of DoS attacks has increased significantly, and the attacks have become more sophisticated. The new paradigm of Software-Defined Networking (SDN) enables a centralized view of the network, which has promising potential for efficient detection and mitigation of such attacks. This modern approach, however, exposes more areas of attack, such as Buffer Saturation, Link Flooding, Flow Table Overflow (FTO), and Controller Saturation. In this paper, we propose a novel, extremely lightweight, simple, yet effective, integrated approach, called Rapid Protection in Dataplane-DDoS (RAPID), for the detection and mitigation of several DoS attacks in SDN scenarios. Our approach couples the centralized view of the SDN networks with network segmentation based on the IP assignment, to generate a novel set of flow rules that can be used to manage the network in a way that allows for a smaller number of overall rules for proactively preventing FTO altogether while generating some novel statistics thereby adding the capability of fast detection and traceback of the origins of attacks to the controller. We evaluate the performance of the proposed scheme - RAPID - with Mininet and Ryu to demonstrate its effectiveness in detecting and mitigating several attacks while maintaining network performance.
最长约 10秒,即可获得该文献文件

科研通智能强力驱动
Strongly Powered by AbleSci AI
科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
花花完成签到,获得积分10
刚刚
一言矣完成签到 ,获得积分10
1秒前
海绵宝宝完成签到,获得积分10
2秒前
贪吃的猴子完成签到,获得积分10
2秒前
long完成签到 ,获得积分10
3秒前
研友_LOqqmZ发布了新的文献求助10
4秒前
CodeCraft应助科研通管家采纳,获得10
4秒前
4秒前
4秒前
kilig应助科研通管家采纳,获得10
4秒前
CodeCraft应助科研通管家采纳,获得10
4秒前
4秒前
4秒前
清心淡如水完成签到,获得积分10
4秒前
Hao应助命运的X号采纳,获得10
5秒前
6秒前
7秒前
哭泣恋风完成签到 ,获得积分10
7秒前
zhizhzihzih完成签到,获得积分10
7秒前
7秒前
2568269431完成签到 ,获得积分10
8秒前
panzer发布了新的文献求助10
8秒前
8秒前
9秒前
smile发布了新的文献求助10
9秒前
10秒前
酷炫蚂蚁发布了新的文献求助10
10秒前
10秒前
Andy_Cheung完成签到,获得积分10
10秒前
feng完成签到,获得积分10
11秒前
maomao发布了新的文献求助10
11秒前
leena完成签到,获得积分10
11秒前
11秒前
青衣北风发布了新的文献求助10
12秒前
feng发布了新的文献求助10
12秒前
guygun发布了新的文献求助10
15秒前
小灰灰完成签到,获得积分10
16秒前
16秒前
海鸥海鸥发布了新的文献求助10
17秒前
青衣北风完成签到,获得积分10
17秒前
高分求助中
Continuum Thermodynamics and Material Modelling 3000
Production Logging: Theoretical and Interpretive Elements 2700
Ensartinib (Ensacove) for Non-Small Cell Lung Cancer 1000
Unseen Mendieta: The Unpublished Works of Ana Mendieta 1000
Bacterial collagenases and their clinical applications 800
El viaje de una vida: Memorias de María Lecea 800
Luis Lacasa - Sobre esto y aquello 700
热门求助领域 (近24小时)
化学 材料科学 生物 医学 工程类 有机化学 生物化学 物理 纳米技术 计算机科学 内科学 化学工程 复合材料 基因 遗传学 物理化学 催化作用 量子力学 光电子学 冶金
热门帖子
关注 科研通微信公众号,转发送积分 3527990
求助须知:如何正确求助?哪些是违规求助? 3108173
关于积分的说明 9287913
捐赠科研通 2805882
什么是DOI,文献DOI怎么找? 1540119
邀请新用户注册赠送积分活动 716941
科研通“疑难数据库(出版商)”最低求助积分说明 709824