SDN下基于突变模型的DDoS攻击检测
oS Attack Detection Based on Catastrophe Theory in SDN Environment
软件定义网络(Software Defined Network,SDN)是一种将控制平面,数据平面,应用平面分离的新型网络,具有集中控制和可编程的优点,解决了很多传统网络中的难题,但SDN在面对DDoS攻击时仍存在一定的问题。本文提出了一种基于尖点突变模型的DDoS检测方法,通过分析DDoS攻击的行为特征和SDN下流表的特点,对该模型提出了基于流表的改良型控制变量和状态变量。最后本文还通过仿真实验采集了数据,与常见方法进行了多次对比实验,通过对实验结果进行分析后得出,该方法可以有效检测DDoS攻击,并且相较于其他方法具有较高的检测率的同时拥有较低的误报率。
Software Defined Network (SDN) is a new type of network that separates the control plane, data plane, and application plane. It has the advantages of centralized control and programmability, and solves many problems in traditional networks. But SDN still has certain problems in the face of DDoS attacks. This paper proposes a DDoS detection method based on a cusp catastrophe model. By analyzing the behavioral characteristics of DDoS attacks and the characteristics of the flow table under SDN, an improved control variable and state variable based on the flow table are proposed for the model. Finally, this paper also collected data through simulation experiments, and conducted multiple comparison experiments with common methods.After analyzing the experimental results, it is concluded that this method can effectively detect DDoS attacks, and has a higher detection rate and a lower false alarm rate than other methods.
王语杰、韩磊、王健
计算技术、计算机技术自动化技术、自动化技术设备
SDN安全oS攻击突变模型流表特征
SDN securityoS attackcatastrophe modelFlow tablefeature
王语杰,韩磊,王健.SDN下基于突变模型的DDoS攻击检测[EB/OL].(2020-04-24)[2025-08-03].http://www.paper.edu.cn/releasepaper/content/202004-254.点此复制
评论