ARTÍCULO
TITULO

A HMM-R Approach to Detect L-DDoS Attack Adaptively on SDN Controller

Wentao Wang    
Xuan Ke and Lingxia Wang    

Resumen

A data center network is vulnerable to suffer from concealed low-rate distributed denial of service (L-DDoS) attacks because its data flow has the characteristics of data flow delay, diversity, and synchronization. Several studies have proposed addressing the detection of L-DDoS attacks, most of them are only detect L-DDoS attacks at a fixed rate. These methods cause low true positive and high false positive in detecting multi-rate L-DDoS attacks. Software defined network (SDN) is a new network architecture that can centrally control the network. We use an SDN controller to collect and analyze data packets entering the data center network and calculate the Renyi entropies base on IP of data packets, and then combine them with the hidden Markov model to get a probability model HMM-R to detect L-DDoS attacks at different rates. Compared with the four common attack detection algorithms (KNN, SVM, SOM, BP), HMM-R is superior to them in terms of the true positive rate, the false positive rate, and the adaptivity.

 Artículos similares

       
 
Lei Zhou, Weiye Xiao, Chen Wang, Haoran Wang     Pág. 143 - 161
Human mobility datasets, such as traffic flow data, reveal the connections between urban spaces. A novel framework is proposed to explore the spatial association between urban commercial and residential spaces via consumption travel flows in Shanghai. A ... ver más

 
Huiting Wang, Yazhi Liu, Wei Li and Zhigang Yang    
In data center networks, when facing challenges such as traffic volatility, low resource utilization, and the difficulty of a single traffic scheduling strategy to meet demands, it is necessary to introduce intelligent traffic scheduling mechanisms to im... ver más
Revista: Future Internet

 
Viktor Masalskyi, Dominykas Ciciurenas, Andrius Dzedzickis, Urte Prentice, Gediminas Braziulis and Vytautas Bucinskas    
This paper addresses the challenge of synchronizing data acquisition from independent sensor systems in a local network. The network comprises microcontroller-based systems that collect data from physical sensors used for monitoring human gait. The synch... ver más
Revista: Future Internet

 
Kristopher Campbell, Myra Lydon, Nicola-Ann Stevens and Su Taylor    
This paper outlines an initial analysis of 20 years of data held on an electronic bridge management database for approximately 3500 arch bridges across Northern Ireland (NI) by the Department for Infrastructure. Arch bridges represent the largest group o... ver más
Revista: Infrastructures

 
Janine Florath, Jocelyn Chanussot and Sina Keller    
Natural hazards can present a significant risk to road infrastructure. This infrastructure is a fundamental component of the transportation infrastructure, with significant importance. During emergencies, society heavily relies on the functionality of th... ver más