Dergi makalesi Açık Erişim
Fouladi, Ramin Fadaei; Ermis, Orhan; Anarim, Emin
<?xml version='1.0' encoding='UTF-8'?> <record xmlns="http://www.loc.gov/MARC21/slim"> <leader>00000nam##2200000uu#4500</leader> <datafield tag="245" ind1=" " ind2=" "> <subfield code="a">A DDoS attack detection and defense scheme using time-series analysis for SDN</subfield> </datafield> <datafield tag="909" ind1="C" ind2="4"> <subfield code="p">JOURNAL OF INFORMATION SECURITY AND APPLICATIONS</subfield> <subfield code="v">54</subfield> </datafield> <controlfield tag="001">6859</controlfield> <datafield tag="980" ind1=" " ind2=" "> <subfield code="a">user-tubitak-destekli-proje-yayinlari</subfield> </datafield> <datafield tag="520" ind1=" " ind2=" "> <subfield code="a">Software defined networking (SDN) has emerged as the integral part of cloud services since it provides flexible management capabilities to monitor and to analyze the network traffic with the help of programmable entities. Although, such functionalities play a significant role in terms of protecting the availability of cloud services against the security threats, SDN still has some vulnerabilities such as the distributed denial of service (DDoS) attacks. The DDoS attackers use spurious packets similar to normal ones and endanger the service continuity of SDN. Although conventional packet-based intrusion detection systems have broad databases to detect DDoS attacks, they are impotent of detection when the attack traffic is sheltered by the normal network traffic. The idea is therefore, to come up with a new countermeasure by observing and distinguishing the instant changes in network. In this work, we propose a DDoS attack detection and defense scheme using time-series analysis for SDN. The proposed scheme employs a model based on the upcoming traffic feature forecasting and the chaos theory together with the exponential filter and the dynamic threshold method to detect instant changes in the network. The experimental result shows that our algorithm has high detection rate and low false alarm.</subfield> </datafield> <datafield tag="650" ind1="1" ind2="7"> <subfield code="2">opendefinition.org</subfield> <subfield code="a">cc-by</subfield> </datafield> <datafield tag="700" ind1=" " ind2=" "> <subfield code="u">EURECOM Sophia Antipolis, Biot, France</subfield> <subfield code="a">Ermis, Orhan</subfield> </datafield> <datafield tag="700" ind1=" " ind2=" "> <subfield code="u">Bogazici Univ, Elect & Elect Engn, Istanbul, Turkey</subfield> <subfield code="a">Anarim, Emin</subfield> </datafield> <datafield tag="980" ind1=" " ind2=" "> <subfield code="b">article</subfield> <subfield code="a">publication</subfield> </datafield> <datafield tag="542" ind1=" " ind2=" "> <subfield code="l">open</subfield> </datafield> <datafield tag="100" ind1=" " ind2=" "> <subfield code="u">Bogazici Univ, Elect & Elect Engn, Istanbul, Turkey</subfield> <subfield code="a">Fouladi, Ramin Fadaei</subfield> </datafield> <datafield tag="260" ind1=" " ind2=" "> <subfield code="c">2020-01-01</subfield> </datafield> <controlfield tag="005">20210315063121.0</controlfield> <datafield tag="909" ind1="C" ind2="O"> <subfield code="o">oai:zenodo.org:6859</subfield> <subfield code="p">user-tubitak-destekli-proje-yayinlari</subfield> </datafield> <datafield tag="856" ind1="4" ind2=" "> <subfield code="z">md5:e9687aa088a3fe6d3b834a2943f0b318</subfield> <subfield code="s">182</subfield> <subfield code="u">https://aperta.ulakbim.gov.trrecord/6859/files/bib-acb153f0-2614-4515-9883-9b1603d9422b.txt</subfield> </datafield> <datafield tag="540" ind1=" " ind2=" "> <subfield code="u">http://www.opendefinition.org/licenses/cc-by</subfield> <subfield code="a">Creative Commons Attribution</subfield> </datafield> <datafield tag="024" ind1=" " ind2=" "> <subfield code="a">10.1016/j.jisa.2020.102587</subfield> <subfield code="2">doi</subfield> </datafield> </record>
Görüntülenme | 48 |
İndirme | 9 |
Veri hacmi | 1.6 kB |
Tekil görüntülenme | 47 |
Tekil indirme | 9 |