Trust based Mechanism for Detection and Isolation of DDOS Attack in Software Defined Networks
Chiman Saini, Sandeep Singh Kang · 2021 3rd International Conference on Advances in Computing, Communication Control and Networking (ICAC3N) · 2021
SDN networks are different from the classic networks in terms of features. Different from SDN, in classic networks, networking tool stake decision regarding the handling of an arriving packet just on the address of its IP destination. The attacking nodes after making entry in the network may activate a DDoS attack. This research work is an attempt of detecting these compromised nodes by implementing a trust-based approach. The trust-assisted approach involves computing the trust level of the allnetwork nodes. The node with minimal trust is labelled as the malevolent node. The trust is calculated on the basis of the number of packets as transmitted node during the time period. The node which has transmitted maximum packets and consumes least resources will be marked as malicious node from the network. The proposed model is implemented in NS2 and the results are analysed in terms of certain parameters such as throughput, delay and overhead. To compute trust, the number of packets forwarded by the nodes in a certain period are considered.