Preventing DDoS with SDN in 5G

Mathias Kjølleberg Førland, Katina Kralevska, Michele Garau, Danilo Gligoroski · 2019

In this paper we set a 5G-like environment using the OMNeT++ Discrete Event Simulator with integrated extension libraries INET, SimuLTE, and OpenFlow OMNeT++ Suite, and we develop a Software- Defined Networking (SDN) Distributed Denial-of-Service (DDoS) defense controller application for detecting and mitigating distributed SYN flood attack. The developed application serves as a Proof of Concept for the potentials of using SDN as a security component in 5G. The performance of the controller application is evaluated by a sensitivity and specificity analysis, and it is validated through numerous experiments where parameters such as attack rate, detection threshold, flow entry timeout, and the number of malicious and benign nodes are varied. The results show that SDN developed applications can be indeed used as security components in 5G.

Read the paper · More papers on PaperTik