返回
A Time-Efficient Approach Toward DDoS Attack Detection in IoT Network Using SDN
DOI:10.1109/JIOT.2021.3098029.png)
摘要
En 中文
As the usability of Internet of Things (IoT) devices increases, the security threats and vulnerabilities associated with these resource-constrained IoT devices also rise. One of the major threats to IoT devices is Distributed Denial of Service (DDoS). To make the security of IoT devices effective and resilient, continuous monitoring and early detection, along with adaptive decision making, are required. These challenges can be addressed with software-defined networking (SDN), which provides an opportunity for effectively managing the DDoS threats faced by IoT devices. This research proposes a novel SDN-based secure IoT framework that can detect the vulnerabilities in IoT devices or malicious traffic generated by IoT devices using the session IP counter and IP Payload analysis. The framework's DDoS attack detection module consisting of the proposed algorithms can easily detect the DDoS attack in the SD-IoT network by analyzing different parameters even with a large traffic volume. These techniques are implemented on an SDN controller and tested by generating a large volume of traffic from a compromised node, which is then detected and notified. According to the results and comparative analysis, the proposed framework detects DDoS attacks in the early stage with high accuracy and detection rate from 98% to 100%, having a low false-positive rate.
Keyword:
Denial-of-service attack
Internet of Things
Security
Computer crime
IP networks
Internet
Malware
Distributed Denial-of-Service (DDoS) attacks
Internet of Things (IoT)
software-defined networking (SDN)
SDNWISE
期刊
IF:
8.9
论文数:
1.4W
被引数:
7.8W

