Search engine for discovering works of Art, research articles, and books related to Art and Culture
ShareThis
Javascript must be enabled to continue!

AN INTELLIGENT SOFTWARE DEFINED NETWORKING CONTROLLER COMPONENT TO DETECT AND MITIGATE DENIAL OF SERVICE ATTACKS

View through CrossRef
Despite many advantages of software defined networking (SDN) such as manageability, scalability, and performance, it has inherent security threats. In particular, denial of service (DoS) attacks are major threats to SDN. The controller’s processing and communication abilities are overwhelmed by DoS attacks. The capacity of the flow tables in the switching device is exhausted due to excess flows created by the controller because of malicious packets. DoS attacks on the controller cause the network performance to drop to a critical level. In this paper, a new SDN controller component was proposed to detect and mitigate DoS attacks in the SDN controller. POX layer three controller component was used for underlying a testbed for PacketIn messages. Any packet from the host was incremented to measure the rate of packet according to its device identification and its input port number. Considering the rate of packets received by the controller and threshold set, malicious packets could be detected and mitigated easily. A developed controller component was tested in a Mininet simulation environment with an hping3 tool to build artificial DoS attacks. Using the enhanced controller component, DoS packets were prevented from accessing the controller and thus, the data plane (switching devices) was prevented from being filled with unwanted flows.
Title: AN INTELLIGENT SOFTWARE DEFINED NETWORKING CONTROLLER COMPONENT TO DETECT AND MITIGATE DENIAL OF SERVICE ATTACKS
Description:
Despite many advantages of software defined networking (SDN) such as manageability, scalability, and performance, it has inherent security threats.
In particular, denial of service (DoS) attacks are major threats to SDN.
The controller’s processing and communication abilities are overwhelmed by DoS attacks.
The capacity of the flow tables in the switching device is exhausted due to excess flows created by the controller because of malicious packets.
DoS attacks on the controller cause the network performance to drop to a critical level.
In this paper, a new SDN controller component was proposed to detect and mitigate DoS attacks in the SDN controller.
POX layer three controller component was used for underlying a testbed for PacketIn messages.
Any packet from the host was incremented to measure the rate of packet according to its device identification and its input port number.
Considering the rate of packets received by the controller and threshold set, malicious packets could be detected and mitigated easily.
A developed controller component was tested in a Mininet simulation environment with an hping3 tool to build artificial DoS attacks.
Using the enhanced controller component, DoS packets were prevented from accessing the controller and thus, the data plane (switching devices) was prevented from being filled with unwanted flows.

Related Results

Deception-Based Security Framework for IoT: An Empirical Study
Deception-Based Security Framework for IoT: An Empirical Study
<p><b>A large number of Internet of Things (IoT) devices in use has provided a vast attack surface. The security in IoT devices is a significant challenge considering c...
Employees’ use of social networking sites and job performance
Employees’ use of social networking sites and job performance
Abstract This study was designed to explore the purpose to which employees use social networking sites and examine its effect on their performance. Using data from 203 resp...
Breast Carcinoma within Fibroadenoma: A Systematic Review
Breast Carcinoma within Fibroadenoma: A Systematic Review
Abstract Introduction Fibroadenoma is the most common benign breast lesion; however, it carries a potential risk of malignant transformation. This systematic review provides an ove...
Mitigating Distributed Denial of Service Attacks in Software-Defined Networking
Mitigating Distributed Denial of Service Attacks in Software-Defined Networking
Distributed Denial of Service (DDoS) is among the commonly used type of network attacks, particularly aimed at the IoT devices in the emerging future wireless services specially fo...
Disclosing the Ethnographic Self
Disclosing the Ethnographic Self
We are our own subjects. How our subjectivity becomes entangled in the lives of others is and has always been our topic. (Denzin 27)This article reflects on the process of disclosi...
Influence of social networking sites on undergraduate students’ academic performance in Obafemi Awolowo University, Ile-Ife, Osun State
Influence of social networking sites on undergraduate students’ academic performance in Obafemi Awolowo University, Ile-Ife, Osun State
This study aims to provide empirical insight into the effect of social networking sites on undergraduate students’ academic performance in Obafemi Awolowo University, Ile-Ife, Osun...
Resilient Output Feedback Control of Cyberphysical Systems
Resilient Output Feedback Control of Cyberphysical Systems
Cyber-physical system architectures are being used in many different applications such as power systems, transportation systems, process control systems, large-scale manufacturing ...

Back to Top