Real-time denial of service attack detection and mitigation on controller in software defined network environment / Bilal Ishfaq

Software Defined Network (SDN) decouples the control plane from the data plane to provide logically centralized control of the network. The control plane is considered as a brain of the network that controls the entire network. Due to such a unique feature, the control plane becomes the central poin...

Full description

Bibliographic Details
Main Author: Bilal , Ishfaq
Format: Thesis
Published: 2016
Subjects:
Online Access:http://studentsrepo.um.edu.my/14256/
http://studentsrepo.um.edu.my/14256/1/Bilal_Isfaq.pdf
http://studentsrepo.um.edu.my/14256/2/Bilal_Ishfaq.pdf
_version_ 1848774929603887104
author Bilal , Ishfaq
author_facet Bilal , Ishfaq
author_sort Bilal , Ishfaq
building UM Research Repository
collection Online Access
description Software Defined Network (SDN) decouples the control plane from the data plane to provide logically centralized control of the network. The control plane is considered as a brain of the network that controls the entire network. Due to such a unique feature, the control plane becomes the central point of attraction to different adversaries in SDN. If the controller is malfunctioned by the attacker than the whole operation of the SDN will be affected. The DoS attack is one of the attacks which affect the controller in the control plane in terms of network and computational resources. In this work, the focus is on the computational aspect of the controller and proposed a solution which assists to detect the attack at its early occurrence. The limitations in early proposed methods, such as early detection of DDoS attack and time-based DDoS attack detection methods, only detect the attack at controller, however it does not provide any information about its solution, such as how to handle these attacks. The objective of this study is to protect the SDN controller from DoS attack that will prevent the controller from being unreachable. The proposed technique not only detects any DoS attacks but also mitigate in real-time. This proposed technique is a lightweight solution which consumes less controller resources in detecting and mitigating the DoS attack. The DoS policy of the attack is implemented which blocks the traffic coming from the malicious node in SDN.
first_indexed 2025-11-14T14:06:07Z
format Thesis
id um-14256
institution University Malaya
institution_category Local University
last_indexed 2025-11-14T14:06:07Z
publishDate 2016
recordtype eprints
repository_type Digital Repository
spelling um-142562023-04-09T22:55:58Z Real-time denial of service attack detection and mitigation on controller in software defined network environment / Bilal Ishfaq Bilal , Ishfaq QA75 Electronic computers. Computer science QA76 Computer software Software Defined Network (SDN) decouples the control plane from the data plane to provide logically centralized control of the network. The control plane is considered as a brain of the network that controls the entire network. Due to such a unique feature, the control plane becomes the central point of attraction to different adversaries in SDN. If the controller is malfunctioned by the attacker than the whole operation of the SDN will be affected. The DoS attack is one of the attacks which affect the controller in the control plane in terms of network and computational resources. In this work, the focus is on the computational aspect of the controller and proposed a solution which assists to detect the attack at its early occurrence. The limitations in early proposed methods, such as early detection of DDoS attack and time-based DDoS attack detection methods, only detect the attack at controller, however it does not provide any information about its solution, such as how to handle these attacks. The objective of this study is to protect the SDN controller from DoS attack that will prevent the controller from being unreachable. The proposed technique not only detects any DoS attacks but also mitigate in real-time. This proposed technique is a lightweight solution which consumes less controller resources in detecting and mitigating the DoS attack. The DoS policy of the attack is implemented which blocks the traffic coming from the malicious node in SDN. 2016-04 Thesis NonPeerReviewed application/pdf http://studentsrepo.um.edu.my/14256/1/Bilal_Isfaq.pdf application/pdf http://studentsrepo.um.edu.my/14256/2/Bilal_Ishfaq.pdf Bilal , Ishfaq (2016) Real-time denial of service attack detection and mitigation on controller in software defined network environment / Bilal Ishfaq. Masters thesis, Universiti Malaya. http://studentsrepo.um.edu.my/14256/
spellingShingle QA75 Electronic computers. Computer science
QA76 Computer software
Bilal , Ishfaq
Real-time denial of service attack detection and mitigation on controller in software defined network environment / Bilal Ishfaq
title Real-time denial of service attack detection and mitigation on controller in software defined network environment / Bilal Ishfaq
title_full Real-time denial of service attack detection and mitigation on controller in software defined network environment / Bilal Ishfaq
title_fullStr Real-time denial of service attack detection and mitigation on controller in software defined network environment / Bilal Ishfaq
title_full_unstemmed Real-time denial of service attack detection and mitigation on controller in software defined network environment / Bilal Ishfaq
title_short Real-time denial of service attack detection and mitigation on controller in software defined network environment / Bilal Ishfaq
title_sort real-time denial of service attack detection and mitigation on controller in software defined network environment / bilal ishfaq
topic QA75 Electronic computers. Computer science
QA76 Computer software
url http://studentsrepo.um.edu.my/14256/
http://studentsrepo.um.edu.my/14256/1/Bilal_Isfaq.pdf
http://studentsrepo.um.edu.my/14256/2/Bilal_Ishfaq.pdf