DDoS Defense Mechanism Based on Software Defined Network

Qian Wang,Zhifeng Zhao,Honggang Zhang
DOI: https://doi.org/10.1109/iccsn.2017.8230285
2017-01-01
Abstract:In this paper, we introduce a SDN(Software Defined Network) based DDoS(Distributed Denial of Service) Defense mechanism. Our mechanism employs SDN's flexibility to redirect packets. The traffic between clients and servers is relayed by a group of dynamic proxy node switches. After several shuffles, our mechanism can mitigate DDoS attack as well as quarantine attackers. The simulation results confirm the effectiveness of our mechanism. In order to accelerate the process of segregating, we propose a efficient algorithm replacing enumerative algorithm. Numerical results verify that the performance of efficient algorithm is closed to enumerative one.
What problem does this paper attempt to address?