Distributed Denial of Service (DDoS) attacks are one of the biggest concerns for security professionals. Traditional middle-box based DDoS attack defense is lack of network-wide monitoring flexibility. With the development of software-defined networking (SDN), it becomes prevalent to exploit centralized controllers to defend against DDoS attacks. However, current solutions suffer with serious southbound communication overhead and detection delay. In this paper, we propose a cross-plane DDoS attack defense framework in SDN, called OverWatch, which exploits collaborative intelligence between data plane and control plane with high defense efficiency. Attack detection and reaction are two key procedures of the proposed framework. We develop a collaborative DDoS attack detection mechanism, which consists of a coarse-grained flow monitoring algorithm on the data plane and a fine-grained machine learning based attack classification algorithm on the control plane. We propose a novel defense strategy offloading mechanism to dynamically deploy defense applications across the controller and switches, by which rapid attack reaction and accurate botnet location can be achieved. We conduct extensive experiments on a real-world SDN network. Experimental results validate the efficiency of our proposed OverWatch framework with high detection accuracy and real-time DDoS attack reaction, as well as reduced communication overhead on SDN southbound interface.
from #AlexandrosSfakianakis via Alexandros G.Sfakianakis on Inoreader http://ift.tt/2n5LSrs
via IFTTT
Εγγραφή σε:
Σχόλια ανάρτησης (Atom)
Δημοφιλείς αναρτήσεις
-
Objectives Greece is one of the leading tobacco-producing countries in European Union, and every year over 19 000 Greeks die from tobacco-at...
-
Objectives Drug interactions, poor adherence to medication and high-risk sexual behaviour may occur in individuals with HIV using recreation...
-
Introduction Multimorbidity (MM) refers to the coexistence of two or more chronic conditions within one person, where no one condition is co...
-
Objective To describe the prevalence and severity of diabetic retinopathy (DR) and sight-threatening DR (STDR) among Chinese adults with dia...
-
Related Articles Three job stress models and their relationship with musculoskeletal pain in blue- and white-collar workers. J Psycho...
-
Abstract Background Mature T-cell and natural killer (NK)-cell lymphomas compose a heterogeneous group of non-Hodgkin lymphomas, and ext...
-
<span class="paragraphSection"><div class="boxTitle">Abstract</div>Masked hypertension (MHT), defined ...
-
Background Hepatitis B virus (HBV) transmission is known to occur through direct contact with infected blood. There has been some suspicion ...
-
In Rwanda, the prevalence of viral hepatitis (HCV) is poorly understood. The current study investigated the prevalence and risk factors of H...
Δεν υπάρχουν σχόλια:
Δημοσίευση σχολίου