arrow
Return

A DDoS Detection Method Based on Feature Engineering and Machine Learning in Software-Defined Networks

delete2023-07-05
delete17
delete
OA
AI
Z
Zhenpeng Liu
Y
Yihang Wang
F
Fan Feng
Y
Yifan Liu *
Z
Zelin Li
Y
Yawei Shan
DOI:10.3390/s23136176delete
deleteOriginal
deleteShare
deleteSave
View PDF
Abstract

Abstract

En 中文
Distributed denial-of-service (DDoS) attacks pose a significant cybersecurity threat to software-defined networks (SDNs). This paper proposes a feature-engineering- and machine-learning-based approach to detect DDoS attacks in SDNs. First, the CSE-CIC-IDS2018 dataset was cleaned and normalized, and the optimal feature subset was found using an improved binary grey wolf optimization algorithm. Next, the optimal feature subset was trained and tested in Random Forest (RF), Support Vector Machine (SVM), K-Nearest Neighbor (k-NN), Decision Tree, and XGBoost machine learning algorithms, from which the best classifier was selected for DDoS attack detection and deployed in the SDN controller. The results show that RF performs best when compared across several performance metrics (e.g., accuracy, precision, recall, F1 and AUC values). We also explore the comparison between different models and algorithms. The results show that our proposed method performed the best and can effectively detect and identify DDoS attacks in SDNs, providing a new idea and solution for the security of SDNs.
Keywords:
software-defined networking
DDoS attacks
feature engineering
machine learning
binary grey wolf optimization algorithm
AI Summary

AI Summary

Key information extracted from the uploaded paper, including a brief overview, abstract, background, key highlights, visual analysis, and future outlook.

Journal

Sensors cover
Sensors
IF:
3.5
Papers:
7.1W
Citations:
20.9W

Organization

H
Hebei University
Scholars:
1.5W
Papers: 7.7K
Citations: 1.0W