An intelligent trust model for hybrid DDoS detection in software defined networks

Changqing Gong,Delong Yu,Liang Zhao,Xiguang Li,Xianwei Li
DOI: https://doi.org/10.1002/cpe.5264
2019-05-02
Concurrency and Computation: Practice and Experience
Abstract:Software Defined Networks (SDNs) have been extensively studied in recent years. The centralised and programmable controller also brings many security challenges. As a conventional attack with the purpose of destruction, Distributed Denial of Service (DDoS) is still a threat for Software Defined Networks (SDNs). There is a lack of trust evaluation and management mechanism between the OpenFlow switches in SDNs. Therefore, in this paper, we propose a trust evaluation and management model, namely, the Intelligent Trust Model (ITM). In this framework, the Extreme Learning Machine (ELM) is applied to detect hybrid DDoS in Software Definition Networks (SDNs). Our model (ITM) can update the trust value of the OpenFlow switches in real time and respond quickly to different types of DDoS attacks. Compared with others, the experiment results show that our model can provide more efficient detection with high detection accuracy and low false positive rate for the hybrid DDoS attack. At last, in our proposal, OpenFlow switches with higher trust have a relatively higher priority. Therefore, we solve the flow conflict issue in the infrastructure layer.
What problem does this paper attempt to address?