TARU PUBLICATIONS
Journal of Discrete Mathematical Sciences and Cryptography cover
Hybrid ·Peer-reviewed·ISSN (Online): 2169-0065·ISSN (Print): 0972-0529

Monthly Journal: Publishes theoretical and applied research in all areas of Discrete Mathematical Sciences, Cryptography, Combinatorics, Elliptic Curves and Information Security.

Issues up to 2022 co-published with and available at:Taylor & Francis Online
submissions@tarupublications.com
Open Access Research Article

Improvement in DDoS attack detection in software defined network using ML algorithm

* , ,

* Corresponding author · click or hover a name for details

pp. 2025–2044Vol. 26Issue 7October 2023DOI: 10.47974/JDMSC-1848 Crossmark XML
Received:
03 Sep 2023
Published Online:
15 Dec 2023
Article type:
Research Article
Language:
EN
Article no.:
JDMSC-1848
Pages:
2025–2044

Abstract

The complexity of handling modern apps is causing older network architectures to struggle. As a result, Software Defined Networking (SDN) has developed into a paradigm-shifting network framework that enables administrators to exercise programmable control over whole network infrastructures. This development makes it easier to configure and operate large networks, but it also adds vulnerabilities, including the possibility of Distributed Denial of Service (DDoS) assaults that could take down the SDN controller. Integrating security tools like firewalls, intrusion detection and prevention systems, and anti-DDoS solutions is crucial to reducing this danger. In the context of SDN, leveraging the analytical power of Machine Learning (ML) algorithms to analyse network traffic patterns is a key tactic for fending off DDoS attacks. Effective defence systems are supported by these ML models, which can distinguish between normal network behaviour and DDoS assault traffic with ease. Decision trees (DT), support vector machines (SVM), and artificial neural networks (ANN) are examples of supervised ML techniques that have evolved into crucial tools in this field. These algorithms are developed utilising datasets with annotations that include examples of both legitimate and malicious network traffic. Once trained, the models may be used to instantly categorise incoming traffic, making it easier to identify and contain any DDoS attacks in real-time.

Keywords

Subject Classifications

68M25

References

[1] Tonkal, Ö., Polat, H., Başaran, E., Cömert, Z., & Kocaoğlu, R., Machine learning approach equipped with neighbourhood component analysis for DDoS attack detection in software-defined networking. Electronics, 10(11), 1227 (2021).
[2] Dong, Shuo, and Mohsen Sarem. “DDoS Attack Detection Method Based on Improved KNN With the Degree of DDoS Attack in Software-Defined Networks.” IEEE Access, vol. 8, pp. 5039-5048 (2020). doi:10.1109/ACCESS.2019.2963077. 
[3] Ahuja, Nisha, et al. “Automated DDOS Attack Detection in Software Defined Networking.” Journal of Network and Computer Applications, vol. 187, p. 103108 (2021).
[4] Rahman, Osman, Muhammad Adnan Ghafoor Quraishi, and Chi-Hung Lung. “DDoS Attacks Detection and Mitigation in SDN Using Machine Learning.” 2019 IEEE World Congress on Services (SERVICES), pp. 184-189 (2019). doi:10.1109/SERVICES.2019.00051.
[5] Abou El Houda, Zakarya, Leila Khoukhi, and Abdellah Senhaji Hafid. “Bringing Intelligence to Software Defined Networks: Mitigating DDoS Attacks.” IEEE Transactions on Network and Service Management, vol. 17, no. 4, pp. 2523-2535 (2020). doi:10.1109/TNSM.2020.3014870.
[6] Cui, Yunhe, et al. “SD-Anti-DDoS: Fast and Efficient DDoS Defense in Software-Defined Networks.” Journal of Network and Computer Applications, vol. 68, pp. 65-79 (2016). doi:10.1016/j.jnca.2016.04.005.
[7] Ye, Jin, et al. “A Ddos Attack Detection Method Based on SVM in Software Defined Network.” Security and Communication Networks, vol. 2018 (2018), pp. 1-8. doi:10.1155/2018/9804061.
[8] Sudar, K. Muthamil, et al. “Detection of Distributed Denial of Service Attacks in SDN using Machine learning techniques.” 2021 International Conference on Computer Communication and Informatics (ICCCI), pp. 1-5 (2021).
[9] Luong, Thanh-Khoa, Tien-Dung Tran, and Gia-Tuan Le. “DDoS attack detection and defense in SDN based on machine learning.” 2020 7th NAFOSTED Conference on Information and Computer Science (NICS), pp. 31-35 (2020). doi:10.1109/NICS51282.2020.9335867.
[10] Aladaileh, Mohammad A., et al. “Detection Techniques of Distributed Denial of Service Attacks on Software-Defined Networking Controller–A Review.” IEEE Access, vol. 8, pp. 143985-143995 (2020). doi:10.1109/ACCESS.2020.3013998.
[11] Sangodoyin, A.O., Akinsolu, M.O., Pillai, P., and Grout, V. “Detection and Classification of DDoS Flooding Attacks on Software-Defined Networks: A Case Study for the Application of Machine Learning.” IEEE Access, vol. 9, pp. 122495-122508 (2021), doi: 10.1109/ACCESS.2021.3109490.
[12] Tonkal, Ö., Polat, H., Başaran, E., Cömert, Z., and Kocaoğlu, R. “Machine Learning Approach Equipped with Neighbourhood Component Analysis for DDoS Attack Detection in Software-Defined Networking.” Electronics, vol. 10, p. 1227 (2021), doi: 10.3390/electronics10111227.
[13] Hosny, K.M., Gouda, A.E-S., and Mohamed, E.R. “New Detection Mechanism for Distributed Denial of Service Attacks in Software Defined Networks.” International Journal of Sociotechnology and Knowledge Development, vol. 12, no. 2, pp. 1-30 (2020).
[14] Maity, P., Saxena, S., Srivastava, S., Sahoo, K.S., Pradhan, A.K., and Kumar, N. “An Effective Probabilistic Technique for DDoS Detection in OpenFlow Controller.” IEEE Systems Journal, vol. 16, no. 1, pp. 1345-1354 (2022), doi: 10.1109/JSYST.2021.3110948.
[15] Li, S., Cui, Y., Ni, Y., and Yan, L. “An Effective SDN Controller Scheduling Method to Defence DDoS Attacks.” Chinese Journal of Electronics, vol. 28, pp. 404-407 (2019), doi: 10.1049/cje.2019.01.017.
[16] Zhang, Y. and Liu, Z. “Software-Defined Networking: Overview, Applications, and Challenges.” IEEE Communications Magazine, vol. 58, no. 1, pp. 78-84 (2020).
[17] Wang, H., Zhang, Y., and Li, H. “A Survey on Software-Defined Networking-Based Security Solutions.” IEEE Communications Surveys and Tutorials, vol. 22, no. 1, pp. 246-266 (2020).
[18] Lee, J., Park, S., and Kim, H. “Secure and Efficient Software-Defined Networking Architecture for Virtualized Cloud Environments.” IEEE Transactions on Network and Service Management, vol. 17, no. 1, pp. 288-301 (2020).
[19] Lin, J. and Xu, G. “SDN-Based DDoS Detection and Mitigation: A Survey.” IEEE Communications Surveys and Tutorials, vol. 22, no. 1, pp. 361-380 (2020). 
[20] Yu, M., Li, K., & Wu, Y., SDN-based security services for cloud computing: a survey. IEEE Transactions on Cloud Computing, 8(1), 1-15 (2020). 
[21] Kim, J., Jeong, S., & Choi, Y., Security analysis of software-defined networking: a survey. IEEE Communications Surveys and Tutorials, 23(2), 1145-1177 (2021).
[22] Bhattacharjee, S., Bhatnagar, S., & Maitra, S., SDN-based architecture for secure and scalable IoT networks. IEEE Internet of Things Journal, 8(6), 4719-4733 (2021).
[23] Gao, J., Wang, J., & Ren, K., Software-defined networking security: a comprehensive survey. IEEE Communications Surveys and Tutorials, 23(1), 117-147 (2021).
[24] Kumar, A., Singh, K., & Khan, T., L-RTAM: Logarithm based reliable trust assessment model for WBSNs. Journal of Discrete Mathematical Sciences and Cryptography, 24(6), 1701-1716 (2021).
[25] Zhang, Y., Li, X., & Wu, J., A survey on the security challenges and solutions of software-defined networking. IEEE Network, 35(2), 28-33 (2021).
[26] Khan, T., & Singh, K., Resource management based secure trust model for WSN. Journal of Discrete Mathematical Sciences and Cryptography, 22(8), 1453-1462 (2019).
[27] Qiu, K., Wang, W., Zhu, X., Wu, M., & Li, H., A survey on software-defined networking security: threats, vulnerabilities, and countermeasures. IEEE Access, 8, 14723-14745 (2020).
[28] Sood, S., Sood, S., & Sood, J. K., A comprehensive review on security challenges and mitigation techniques in software-defined networks. Journal of Network and Computer Applications, 161, 102832 (2020).
[29] Khan, T., & Singh, K., Resource management based secure trust model for WSN. Journal of Discrete Mathematical Sciences and Cryptography, 22(8), 1453-1462 (2019).
[30] Chakraborty, M., Das, A. K., Samanta, A., Maity, S., & Goswami, D., Security challenges and mitigation techniques in software-defined networking. 2020 International Conference on Recent Advances in Electronics and Communication Technology (ICRAECT), 1-5 (2020).
[31] Alenazi, M. R., Al-Salman, R., & Al-Turjman, F. “Security Issues and Challenges in Software Defined Networking: A Survey.” IEEE Communications Surveys & Tutorials, vol. 23, no. 1, pp. 359-388 (2021).
[32] Islam, S. M. R., Alam, M. M., Hasan, M. N., & Al-Fuqaha, A. “A Survey on Security and Privacy Issues in Software-Defined Networking (SDN).” Journal of Network and Computer Applications, vol. 183, pp. 102-124 (2021).
[33] Umamaheswaran, S., John, R., Deepthi, S. S., & Dharmarajlu, S. M., Caption positioning structure for hard of hearing people using deep learning method. Journal of Discrete Mathematical Sciences and Cryptography, 25(3), 623-633 (2022).
[34] Shah, S. P., Panchal, P. B., & Jain, R. K. “Security Issues and Challenges in Software-Defined Networking: A Review.” International Journal of Computer Science and Mobile Computing, vol. 10, no. 1, pp. 41-51 (2021).
[35] Ali, A. S., Jawad, M. A., Hussain, S. F., Al-Sammarraie, A., & Ali, H. “A Survey on Security Challenges and Solutions for Software-Defined Networking.” Future Computing and Informatics Journal, vol. 6, no. 2, pp. 337-348 (2021).
[36] Gupta, V., Juyal, S., Singh, G. P., Killa, C., & Gupta, N., Emotion recognition of audio/speech data using deep learning approaches. Journal of Information and Optimization Sciences, 41(6), 1309-1317 (2020).

Views: 245Downloads: 69Citations: 1