OverWatch: A Cross-Plane DDoS Attack Defense Framework with Collaborative Intelligence in SDN
المؤلفون المشاركون
Su, Jinshu
Han, Biao
Yang, Xiangrui
Sun, Zhigang
Huang, Jinfeng
المصدر
Security and Communication Networks
العدد
المجلد 2018، العدد 2018 (31 ديسمبر/كانون الأول 2018)، ص ص. 1-15، 15ص.
الناشر
Hindawi Publishing Corporation
تاريخ النشر
2018-01-24
دولة النشر
مصر
عدد الصفحات
15
التخصصات الرئيسية
تكنولوجيا المعلومات وعلم الحاسوب
الملخص EN
Distributed Denial of Service (DDoS) attacks are one of the biggest concerns for security professionals.
Traditional middle-box based DDoS attack defense is lack of network-wide monitoring flexibility.
With the development of software-defined networking (SDN), it becomes prevalent to exploit centralized controllers to defend against DDoS attacks.
However, current solutions suffer with serious southbound communication overhead and detection delay.
In this paper, we propose a cross-plane DDoS attack defense framework in SDN, called OverWatch, which exploits collaborative intelligence between data plane and control plane with high defense efficiency.
Attack detection and reaction are two key procedures of the proposed framework.
We develop a collaborative DDoS attack detection mechanism, which consists of a coarse-grained flow monitoring algorithm on the data plane and a fine-grained machine learning based attack classification algorithm on the control plane.
We propose a novel defense strategy offloading mechanism to dynamically deploy defense applications across the controller and switches, by which rapid attack reaction and accurate botnet location can be achieved.
We conduct extensive experiments on a real-world SDN network.
Experimental results validate the efficiency of our proposed OverWatch framework with high detection accuracy and real-time DDoS attack reaction, as well as reduced communication overhead on SDN southbound interface.
نمط استشهاد جمعية علماء النفس الأمريكية (APA)
Han, Biao& Yang, Xiangrui& Sun, Zhigang& Huang, Jinfeng& Su, Jinshu. 2018. OverWatch: A Cross-Plane DDoS Attack Defense Framework with Collaborative Intelligence in SDN. Security and Communication Networks،Vol. 2018, no. 2018, pp.1-15.
https://search.emarefa.net/detail/BIM-1214557
نمط استشهاد الجمعية الأمريكية للغات الحديثة (MLA)
Han, Biao…[et al.]. OverWatch: A Cross-Plane DDoS Attack Defense Framework with Collaborative Intelligence in SDN. Security and Communication Networks No. 2018 (2018), pp.1-15.
https://search.emarefa.net/detail/BIM-1214557
نمط استشهاد الجمعية الطبية الأمريكية (AMA)
Han, Biao& Yang, Xiangrui& Sun, Zhigang& Huang, Jinfeng& Su, Jinshu. OverWatch: A Cross-Plane DDoS Attack Defense Framework with Collaborative Intelligence in SDN. Security and Communication Networks. 2018. Vol. 2018, no. 2018, pp.1-15.
https://search.emarefa.net/detail/BIM-1214557
نوع البيانات
مقالات
لغة النص
الإنجليزية
الملاحظات
Includes bibliographical references
رقم السجل
BIM-1214557
قاعدة معامل التأثير والاستشهادات المرجعية العربي "ارسيف Arcif"
أضخم قاعدة بيانات عربية للاستشهادات المرجعية للمجلات العلمية المحكمة الصادرة في العالم العربي
تقوم هذه الخدمة بالتحقق من التشابه أو الانتحال في الأبحاث والمقالات العلمية والأطروحات الجامعية والكتب والأبحاث باللغة العربية، وتحديد درجة التشابه أو أصالة الأعمال البحثية وحماية ملكيتها الفكرية. تعرف اكثر