REAL-GUARD

Qi Liu,Hongwei Ruan,Hua Li,Xiaodi Li,Xianrong Wang
DOI: https://doi.org/10.1145/3444370.3444612
2020-01-01
Abstract:Software Defined Network (SDN) is a new networking technology with the advantages of separating data forwarding plane from the control plane, and a growing number of traditional network attacks are left to this new network architecture. However, current solutions only concentrate on several special attacks in SDN and bring out a variety of overhead. In this paper, we consider two levels detection in data forwarding plane: packet level and flow level. We proposed an efficient, effective, real-time and machine learning based mechanism, called REAL-GUARD, to detect and defend network security threats with decision tree methods and without any extra devices. The experiments prove that our mechanism can defend scanning attacks and detect flooding attacks effectively with low additional performance overhead.
What problem does this paper attempt to address?