The Security Mechanism Based on the Entropy and Hurst Exponent Analysis to Detect DDoS Attack in SDN

碩士 === 國立中興大學 === 資訊科學與工程學系所 === 107 === The Software Defined Networking(SDN)is a novel network architecture. The main feature of the SDN network architecture is separating the network layer into Control Plane and Data Plane. The network switch is only responsible for transmit and receive data. The...

Full description

Bibliographic Details
Main Authors: Te-Yuan Wang, 汪得源
Other Authors: Woei Lin
Format: Others
Language:zh-TW
Published: 2019
Online Access:http://ndltd.ncl.edu.tw/cgi-bin/gs32/gsweb.cgi/login?o=dnclcdr&s=id=%22107NCHU5394030%22.&searchmode=basic
id ndltd-TW-107NCHU5394030
record_format oai_dc
spelling ndltd-TW-107NCHU53940302019-11-30T06:09:40Z http://ndltd.ncl.edu.tw/cgi-bin/gs32/gsweb.cgi/login?o=dnclcdr&s=id=%22107NCHU5394030%22.&searchmode=basic The Security Mechanism Based on the Entropy and Hurst Exponent Analysis to Detect DDoS Attack in SDN 在SDN網路架構下基於熵值與Hurst指數分析法偵測DDoS攻擊的安全機制 Te-Yuan Wang 汪得源 碩士 國立中興大學 資訊科學與工程學系所 107 The Software Defined Networking(SDN)is a novel network architecture. The main feature of the SDN network architecture is separating the network layer into Control Plane and Data Plane. The network switch is only responsible for transmit and receive data. The controller implements the programmable ability of network logic to achieve the goal of centralized control. The communication mechanism between the SDN controller and switches is vulnerable to the DDoS attacks. To solve this problem, we propose a DDoS attack detection method based on the Hurst exponent variation and Renyi entropy. When the variation between the Hurst exponent and Renyi entropy one exceed the detection threshold, we assume DDoS attack happens. There are many controllers supported the SDN network. Opendaylight uses OSGi architecture. The kernel is the bundles running on the OSGi Framework implements the Model-Driven Service Abstraction Layer of Opendaylight. The MD-SAL allows developers uses YANG language defined model to build the application interface, control the communication between the modules, data access and remote procedure call. We developed the application to detect and defense DDoS attacks based on Hurst exponent and Renyi entropy. After we deployed the modules on the Opendaylight controller, the accuracy of detection is around 95% when the attack occurs. Woei Lin 林偉 2019 學位論文 ; thesis 28 zh-TW
collection NDLTD
language zh-TW
format Others
sources NDLTD
description 碩士 === 國立中興大學 === 資訊科學與工程學系所 === 107 === The Software Defined Networking(SDN)is a novel network architecture. The main feature of the SDN network architecture is separating the network layer into Control Plane and Data Plane. The network switch is only responsible for transmit and receive data. The controller implements the programmable ability of network logic to achieve the goal of centralized control. The communication mechanism between the SDN controller and switches is vulnerable to the DDoS attacks. To solve this problem, we propose a DDoS attack detection method based on the Hurst exponent variation and Renyi entropy. When the variation between the Hurst exponent and Renyi entropy one exceed the detection threshold, we assume DDoS attack happens. There are many controllers supported the SDN network. Opendaylight uses OSGi architecture. The kernel is the bundles running on the OSGi Framework implements the Model-Driven Service Abstraction Layer of Opendaylight. The MD-SAL allows developers uses YANG language defined model to build the application interface, control the communication between the modules, data access and remote procedure call. We developed the application to detect and defense DDoS attacks based on Hurst exponent and Renyi entropy. After we deployed the modules on the Opendaylight controller, the accuracy of detection is around 95% when the attack occurs.
author2 Woei Lin
author_facet Woei Lin
Te-Yuan Wang
汪得源
author Te-Yuan Wang
汪得源
spellingShingle Te-Yuan Wang
汪得源
The Security Mechanism Based on the Entropy and Hurst Exponent Analysis to Detect DDoS Attack in SDN
author_sort Te-Yuan Wang
title The Security Mechanism Based on the Entropy and Hurst Exponent Analysis to Detect DDoS Attack in SDN
title_short The Security Mechanism Based on the Entropy and Hurst Exponent Analysis to Detect DDoS Attack in SDN
title_full The Security Mechanism Based on the Entropy and Hurst Exponent Analysis to Detect DDoS Attack in SDN
title_fullStr The Security Mechanism Based on the Entropy and Hurst Exponent Analysis to Detect DDoS Attack in SDN
title_full_unstemmed The Security Mechanism Based on the Entropy and Hurst Exponent Analysis to Detect DDoS Attack in SDN
title_sort security mechanism based on the entropy and hurst exponent analysis to detect ddos attack in sdn
publishDate 2019
url http://ndltd.ncl.edu.tw/cgi-bin/gs32/gsweb.cgi/login?o=dnclcdr&s=id=%22107NCHU5394030%22.&searchmode=basic
work_keys_str_mv AT teyuanwang thesecuritymechanismbasedontheentropyandhurstexponentanalysistodetectddosattackinsdn
AT wāngdéyuán thesecuritymechanismbasedontheentropyandhurstexponentanalysistodetectddosattackinsdn
AT teyuanwang zàisdnwǎnglùjiàgòuxiàjīyúshāngzhíyǔhurstzhǐshùfēnxīfǎzhēncèddosgōngjīdeānquánjīzhì
AT wāngdéyuán zàisdnwǎnglùjiàgòuxiàjīyúshāngzhíyǔhurstzhǐshùfēnxīfǎzhēncèddosgōngjīdeānquánjīzhì
AT teyuanwang securitymechanismbasedontheentropyandhurstexponentanalysistodetectddosattackinsdn
AT wāngdéyuán securitymechanismbasedontheentropyandhurstexponentanalysistodetectddosattackinsdn
_version_ 1719300453448024064