Skip to main content

A Software Approach for Mitigation of DoS Attacks on SDN’s (Software-Defined Networks)

  • Conference paper
  • First Online:
Soft Computing in Data Analytics

Part of the book series: Advances in Intelligent Systems and Computing ((AISC,volume 758))

  • 843 Accesses

Abstract

Software-defined networking (SDN) is a network technology that aims to make the network more flexible and centralized. The main aim of the architecture is decoupling of network and control plane which enables the network control to be programmed and hence the forwarding devices are abstracted from higher application services. However, before this technology evolves on a large scale, it is important to understand the vulnerabilities associated with it. The agenda for this paper is to study the different types of attacks on the three layers of the OpenFlow protocol and the possible mitigation strategies to reduce the impact of those attacks on the network, implement SDN network which consists assorted topologies connecting numerous hosts, switches, and controllers. The implemented framework monitors the various events occurring in the network, identifies malicious events causing DoS attack, and mitigates the same. Through implementation, we elaborate different ways of making SDN more secure.

This is a preview of subscription content, log in via an institution to check access.

Access this chapter

Chapter
USD 29.95
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
eBook
USD 169.00
Price excludes VAT (USA)
  • Available as EPUB and PDF
  • Read on any device
  • Instant download
  • Own it forever
Softcover Book
USD 219.99
Price excludes VAT (USA)
  • Compact, lightweight edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Purchases are for personal use only

Institutional subscriptions

References

  1. Kreutz, D., Fernando, M.V., Ramos, P.V.: Towards secure and dependable software defined networks published. In: IEEE Transaction y. University of Lisbon, Portugal, Aug 2013

    Google Scholar 

  2. Wang, H., Xu, L., Gu, G.: OF-GUARD: a dos attack prevention extension in software defined network SDN. In: Proceedings of the 45th Annual IEEE/IFIP International Conference on Dependable Systems and Networks. Texas University (2015)

    Google Scholar 

  3. Kandoi, R., Antikainen, M.: Denial of service attacks in Openflow SDN networks IEEE/IFIP, department of computer science In: Finland in International Conference on Integrated Network Management, May 2015

    Google Scholar 

  4. Braga, R., Mota, E., Passito, l: Lightweight DDoS flooding attack detection using NOX/Openflow. In: 35th Annul IEEE Conference on Local Computer Networks, Denver, Colorado (2010)

    Google Scholar 

  5. Sezer, S., Scott-Hayward, S.: Pushpinder Kaur Chouhan: implementation challenges for software defined networks published. IEEE Commun. J. (2013)

    Google Scholar 

  6. Douligeris, C., Mitrokotsa, A.: DDOS attacks and defense mechanisms: classification and state-of-the-art. Comput. Netw. 44, 643–666 (2004)

    Article  Google Scholar 

  7. Prete, L.R., Schweitzer, C.M., Shinoda, A.A., Santos de Oliveira, R.L.: Simulation in an SDN Network: Scenario using Pox Controer. IEEE (2014)

    Google Scholar 

  8. Hakiri, A., Gokhale, A., Berthou, P.: Software defined networking: challenges and research opportunities for future. Internet Comput. Netw. J. 75, Part A (2014)

    Google Scholar 

  9. Tariq, U., Hong, M., Lhee, K.-S.: A Comprehensive Categorization of DDoS Attack and DDoS Defenseense Techniques, in Advanced Data Mining and Applications, pp. 1025–1036. Springer, Heidelberg (2006)

    Google Scholar 

  10. Scott-Hayward, S., Natarajan, S., Sezer, S.: A survey of security in software defined networks. In: IEEE Communication Survey and Tutorials, vol 18, no. 1. First quarter (2016)

    Google Scholar 

  11. Scott-Hayward, S., O’ Callaghan, G., Sezer, S.: SDN security: a survey. In: IEEE SDN for Future Networks and Services (SDN4FNS), Trento, Italy (2013)

    Google Scholar 

  12. http://searchitchannel.techtarget.com/tutorial/Establish-Ingress-and-Egress-address-filtering-policies

  13. https://en.wikipedia.org/wiki/Ingress_filtering

  14. https://en.wikipedia.org/wiki/Egress_filtering

  15. Mininet. //http://www.mininet.org/accessed (2016). Accessed 15/11/2016

  16. Zhang, P., Wang, H., Hu, C., Lin, C.: On denial of service attacks in software defined network published. In: IEEE Conference on Network Forensics and Surveillance for emerging networks November (2016)

    Google Scholar 

Download references

Author information

Authors and Affiliations

Authors

Corresponding author

Correspondence to Trupti Lotlikar .

Editor information

Editors and Affiliations

Rights and permissions

Reprints and permissions

Copyright information

© 2019 Springer Nature Singapore Pte Ltd.

About this paper

Check for updates. Verify currency and authenticity via CrossMark

Cite this paper

Lotlikar, T., Shah, D. (2019). A Software Approach for Mitigation of DoS Attacks on SDN’s (Software-Defined Networks). In: Nayak, J., Abraham, A., Krishna, B., Chandra Sekhar, G., Das, A. (eds) Soft Computing in Data Analytics . Advances in Intelligent Systems and Computing, vol 758. Springer, Singapore. https://doi.org/10.1007/978-981-13-0514-6_33

Download citation

Publish with us

Policies and ethics