Securing Smart Homes via Software-Defined Networking and Low-Cost Traffic Classification

04/01/2021
by   Holden Gordon, et al.
0

IoT devices have become popular targets for various network attacks due to their lack of industry-wide security standards. In this work, we focus on smart home IoT device identification and defending them against Distributed Denial of Service (DDoS) attacks. The proposed framework protects smart homes by using VLAN-based network isolation. This architecture has two VLANs: one with non-verified devices and the other with verified devices, both of which are managed by the SDN controller. Lightweight stateless flow-based features, including ICMP, TCP, and UDP protocol percentage, packet count and size, and IP diversity ratio, are proposed for efficient feature collections. Further analysis is performed to minimize training data to run on resource-constrained edge devices in smart home networks. Three popular machine learning algorithms, including K-Nearest-Neighbors, Random Forest, and Support Vector Machines, are used to classify IoT devices and detect different types of DDoS attacks, including TCP-SYN, UDP, and ICMP. The system's effectiveness and efficiency are evaluated by emulating a network consisting of an Open vSwitch, Faucet SDN controller, and several IoT device traces from two different testbeds.

READ FULL TEXT

page 1

page 6

research
12/17/2022

IoT Device Identification Based on Network Traffic Characteristics

IoT device identification plays an important role in monitoring and impr...
research
06/21/2021

An Efficient SDN Architecture for Smart Home Security Accelerated by FPGA

With the rise in Internet of Things (IoT) devices, home network manageme...
research
12/20/2017

Securing Edge Networks with Securebox

The number of mobile and IoT devices connected to home and enterprise ne...
research
07/22/2020

An SDN-IoT-based Framework for Future Smart Cities: Addressing Perspective

In this Chapter, a software-defined network (SDN)-based framework for fu...
research
09/16/2020

The Dark (and Bright) Side of IoT: Attacks and Countermeasures to Identification of Smart Home Devices and Services

We present a new machine learning-based attack that exploits network pat...
research
10/29/2020

Light-Weight DDoS Mitigation at Network Edge with Limited Resources

The Internet of Things (IoT) has been growing rapidly in recent years. W...
research
10/17/2022

Detect and Classify IoT Camera Traffic

Deployment of IoT cameras in an organization threatens security and priv...

Please sign up or login with your details

Forgot password? Click here to reset