2018
DOI: 10.1155/2018/9649643
|View full text |Cite
|
Sign up to set email alerts
|

OverWatch: A Cross-Plane DDoS Attack Defense Framework with Collaborative Intelligence in SDN

Abstract: Distributed Denial of Service (DDoS) attacks are one of the biggest concerns for security professionals. Traditional middle-box based DDoS attack defense is lack of network-wide monitoring flexibility. With the development of software-defined networking (SDN), it becomes prevalent to exploit centralized controllers to defend against DDoS attacks. However, current solutions suffer with serious southbound communication overhead and detection delay. In this paper, we propose a cross-plane DDoS attack defense fram… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
1
1
1

Citation Types

1
31
0

Year Published

2018
2018
2021
2021

Publication Types

Select...
5
2

Relationship

0
7

Authors

Journals

citations
Cited by 62 publications
(32 citation statements)
references
References 27 publications
1
31
0
Order By: Relevance
“…The third stage is a recovery stage in which the methods are to implement in the victim server to serve its user or to recover from the attacks. Several methods including migration [23] and backup resources [24] are suggested by a few researchers. But at this stage, implementation of any method leads to an overhead of reserved resources and costs to the victim server.…”
Section: Challenge Responsementioning
confidence: 99%
“…The third stage is a recovery stage in which the methods are to implement in the victim server to serve its user or to recover from the attacks. Several methods including migration [23] and backup resources [24] are suggested by a few researchers. But at this stage, implementation of any method leads to an overhead of reserved resources and costs to the victim server.…”
Section: Challenge Responsementioning
confidence: 99%
“…Reference improvement overwatch 13 Though their defense actuators are deployed in the data plane, their forwarding latency has higher latency compared to our datapath, due to optimization with DPDK and kernel memory mapped Netfilter model. Their primary attack classifier algorithm runs on the control plane only and hence prone to control plane saturation and overload.…”
Section: Table 3 Comparison With Selected Workmentioning
confidence: 99%
“…On the other hand, being very suitable for the modern high‐bandwidth applications, SDN will increasingly replace conventional networking in the near future, and then it will rapidly become the main diffusion field for botnets. In recent years, there has been active research in SDN, NFV, and their applications for network security …”
Section: Introductionmentioning
confidence: 99%
See 1 more Smart Citation
“…An et al [24] propose a new scheme based on the analysis of the network status in the edge by gathering metrics to extract characteristics and security information of the fog computing infrastructure using Semisupervised Extreme Learning Machines (SS-ELM) algorithm. Hang et al [25] proposed a solution called Overwatch that provided a solution to Distributed Denial of Services (DDoS) attacks. Authors developed a collaborative DDoS attack detection mechanism, which consists in a flow monitoring algorithm on the data plane processing the coarse-grained flows and a fine-grained machine learning classification algorithm on the control plane.…”
Section: Related Workmentioning
confidence: 99%