DDoSNet: A Deep-Learning Model for Detecting Network Attacks

06/24/2020
by   Mahmoud Said Elsayed, et al.
0

Software-Defined Networking (SDN) is an emerging paradigm, which evolved in recent years to address the weaknesses in traditional networks. The significant feature of the SDN, which is achieved by disassociating the control plane from the data plane, facilitates network management and allows the network to be efficiently programmable. However, the new architecture can be susceptible to several attacks that lead to resource exhaustion and prevent the SDN controller from supporting legitimate users. One of these attacks, which nowadays is growing significantly, is the Distributed Denial of Service (DDoS) attack. DDoS attack has a high impact on crashing the network resources, making the target servers unable to support the valid users. The current methods deploy Machine Learning (ML) for intrusion detection against DDoS attacks in the SDN network using the standard datasets. However, these methods suffer several drawbacks, and the used datasets do not contain the most recent attack patterns - hence, lacking in attack diversity. In this paper, we propose DDoSNet, an intrusion detection system against DDoS attacks in SDN environments. Our method is based on Deep Learning (DL) technique, combining the Recurrent Neural Network (RNN) with autoencoder. We evaluate our model using the newly released dataset CICDDoS2019, which contains a comprehensive variety of DDoS attacks and addresses the gaps of the existing current datasets. We obtain a significant improvement in attack detection, as compared to other benchmarking methods. Hence, our model provides great confidence in securing these networks.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
08/03/2022

A Novel Approach To Network Intrusion Detection System Using Deep Learning For Sdn: Futuristic Approach

Software-Defined Networking (SDN) is the next generation to change the a...
research
04/15/2021

SDN-Based Intrusion Detection System for Early Detection and Mitigation of DDoS Attacks

The current paper addresses relevant network security vulnerabilities in...
research
12/27/2019

Detecting DDoS Attack on SDN Due to Vulnerabilities in OpenFlow

Software Defined Networking (SDN) is a network paradigm shift that facil...
research
03/01/2021

Centralized and Distributed Intrusion Detection for Resource Constrained Wireless SDN Networks

Software-defined networking (SDN) was devised to simplify network manage...
research
06/08/2018

A SDN-based Flexible System for On-the-Fly Monitoring and Treatment of Security Events

The Software Defined Networking (SDN) paradigm decouples control and dat...
research
06/11/2018

An Efficient Flow-based Multi-level Hybrid Intrusion Detection System for Software-Defined Networks

Software-Defined Networking (SDN) is a novel networking paradigm that pr...
research
09/22/2020

ORACLE: Collaboration of Data and Control Planes to Detect DDoS Attacks

The possibility of programming the control and data planes, enabled by t...

Please sign up or login with your details

Forgot password? Click here to reset