SDN-Based Intrusion Detection System for Early Detection and Mitigation of DDoS Attacks
Pedro Manso, Jose Moura, Carlos Serrao

TL;DR
This paper presents an SDN-based intrusion detection system that detects and mitigates DDoS attacks in IoT networks, improving security and network performance by reacting at the attack source.
Contribution
It introduces a reactive SDN-enabled IDS that automatically detects DDoS attacks and coordinates mitigation, a novel approach for early attack detection and response in IoT environments.
Findings
Timely detection of DDoS attacks
Effective mitigation of attack impact
Ensures normal network traffic delivery
Abstract
The current paper addresses relevant network security vulnerabilities introduced by network devices within the emerging paradigm of Internet of Things (IoT) as well as the urgent need to mitigate the negative effects of some types of Distributed Denial of Service (DDoS) attacks that try to explore those security weaknesses. We design and implement a Software-Defined Intrusion Detection System (IDS) that reactively impairs the attacks at its origin, ensuring the normal operation of the network infrastructure. Our proposal includes an IDS that automatically detects several DDoS attacks, and then as an attack is detected, it notifies a Software Defined Networking (SDN) controller. The current proposal also downloads some convenient traffic forwarding decisions from the SDN controller to network devices. The evaluation results suggest that our proposal timely detects several types of…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
