Title
Research on LDoS Attack Detection and Defense Mechanism in Software Defined Networks.
Abstract
The LDoS (Low rate Denial of Service) attack that aims at exhausting the limited SDN switch buffer resource is hard to detect and degrade network performance seriously. To solve such a problem, this paper proposes an SDN LDoS detection and defense mechanism ADAR (Attack-flow Detection and Attack-port Recognition), which can detect the attack flows based on the collected statistical data, and identify and suppress these attack flows. The experimental results show that ADAR can effectively detect the SDN switch buffer overflow LDoS attacks, and mitigate their impact by using the attack port suppression method. Meanwhile, it can also effectively alleviate the problem of switch buffer overflow caused by the normal traffic burst in the network.
Year
DOI
Venue
2020
10.1007/978-981-15-9031-3_8
SocialSec
DocType
Citations 
PageRank 
Conference
0
0.34
References 
Authors
0
5
Name
Order
Citations
PageRank
Shengxu Xie111.98
Changyou Xing24710.55
Guomin Zhang312315.78
Xiang-Lin Wei411726.16
GuYu Hu53415.21