Research on low-rate DDoS attack of SDN network in cloud environment

Aiming at the problems of low-rate DDoS attack detection accuracy in cloud SDN network and the lack of unified framework for data plane and control plane low-rate DDoS attack detection and defense,a unified framework for low-rate DDoS attack detection was proposed.First of all,the validity of the da...

Full description

Saved in:
Bibliographic Details
Main Authors: Xingshu CHEN, Qiang HUA, Yitong WANG, Long GE, Yi ZHU
Format: Article
Language:zho
Published: Editorial Department of Journal on Communications 2019-06-01
Series:Tongxin xuebao
Subjects:
Online Access:http://www.joconline.com.cn/zh/article/doi/10.11959/j.issn.1000-436x.2019120/
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1841539388294561792
author Xingshu CHEN
Qiang HUA
Yitong WANG
Long GE
Yi ZHU
author_facet Xingshu CHEN
Qiang HUA
Yitong WANG
Long GE
Yi ZHU
author_sort Xingshu CHEN
collection DOAJ
description Aiming at the problems of low-rate DDoS attack detection accuracy in cloud SDN network and the lack of unified framework for data plane and control plane low-rate DDoS attack detection and defense,a unified framework for low-rate DDoS attack detection was proposed.First of all,the validity of the data plane DDoS attacks in low rate was analyzed,on the basis of combining with low-rate of DDoS attacks in the aspect of communications,frequency characteristics,extract the mean value,maximum value,deviation degree and average deviation,survival time of ten dimensions characteristics of five aspects,to achieve the low-rate of DDoS attack detection based on bayesian networks,issued by the controller after the relevant strategies to block the attack flow.Finally,in OpenStack cloud environment,the detection rate of low-rate DDoS attack reaches 99.3% and the CPU occupation rate is 9.04%.It can effectively detect and defend low-rate DDoS attacks.
format Article
id doaj-art-e65c3945b3f14852895030d45f5fcba0
institution Kabale University
issn 1000-436X
language zho
publishDate 2019-06-01
publisher Editorial Department of Journal on Communications
record_format Article
series Tongxin xuebao
spelling doaj-art-e65c3945b3f14852895030d45f5fcba02025-01-14T07:17:14ZzhoEditorial Department of Journal on CommunicationsTongxin xuebao1000-436X2019-06-014021022259728016Research on low-rate DDoS attack of SDN network in cloud environmentXingshu CHENQiang HUAYitong WANGLong GEYi ZHUAiming at the problems of low-rate DDoS attack detection accuracy in cloud SDN network and the lack of unified framework for data plane and control plane low-rate DDoS attack detection and defense,a unified framework for low-rate DDoS attack detection was proposed.First of all,the validity of the data plane DDoS attacks in low rate was analyzed,on the basis of combining with low-rate of DDoS attacks in the aspect of communications,frequency characteristics,extract the mean value,maximum value,deviation degree and average deviation,survival time of ten dimensions characteristics of five aspects,to achieve the low-rate of DDoS attack detection based on bayesian networks,issued by the controller after the relevant strategies to block the attack flow.Finally,in OpenStack cloud environment,the detection rate of low-rate DDoS attack reaches 99.3% and the CPU occupation rate is 9.04%.It can effectively detect and defend low-rate DDoS attacks.http://www.joconline.com.cn/zh/article/doi/10.11959/j.issn.1000-436x.2019120/cloud computingsoftware defined networkinglow-rate DDoS attackBayesian network
spellingShingle Xingshu CHEN
Qiang HUA
Yitong WANG
Long GE
Yi ZHU
Research on low-rate DDoS attack of SDN network in cloud environment
Tongxin xuebao
cloud computing
software defined networking
low-rate DDoS attack
Bayesian network
title Research on low-rate DDoS attack of SDN network in cloud environment
title_full Research on low-rate DDoS attack of SDN network in cloud environment
title_fullStr Research on low-rate DDoS attack of SDN network in cloud environment
title_full_unstemmed Research on low-rate DDoS attack of SDN network in cloud environment
title_short Research on low-rate DDoS attack of SDN network in cloud environment
title_sort research on low rate ddos attack of sdn network in cloud environment
topic cloud computing
software defined networking
low-rate DDoS attack
Bayesian network
url http://www.joconline.com.cn/zh/article/doi/10.11959/j.issn.1000-436x.2019120/
work_keys_str_mv AT xingshuchen researchonlowrateddosattackofsdnnetworkincloudenvironment
AT qianghua researchonlowrateddosattackofsdnnetworkincloudenvironment
AT yitongwang researchonlowrateddosattackofsdnnetworkincloudenvironment
AT longge researchonlowrateddosattackofsdnnetworkincloudenvironment
AT yizhu researchonlowrateddosattackofsdnnetworkincloudenvironment