Detection of DDoS in SDN Environment Using Entropy-based Detection

2019

Software-defined networking shifts the current paradigm of network infrastructures by providing a central control layer, improves network management, and implements programmability for flexibility. However, recent studies have shown the vulnerabilities that emerge within this architecture that can prove detrimental to the overall network infrastructure. In this work we analyze the effects of Distributed Denial of Service attacks on a software-defined networking environment and proposes an entropy-based approach to detect these attacks. The study uses the flexibility of OpenFlow protocol, and an OpenFlow controller (POX) to mitigate the attacks upon detection. Initially, through simulation the results of the detection algorithm was observed, and then implemented into a small-scaled network test bed, and finally the results of the proposed algorithm were presented and analyzed.

Read the paper · More papers on PaperTik