Netinfo Security ›› 2020, Vol. 20 ›› Issue (5): 11-20.doi: 10.3969/j.issn.1671-1122.2020.05.002

Previous Articles     Next Articles

DDoS Attack Detection Based on Catastrophe Theory in SDN Environment

WANG Jian1,2,*(), WANG Yujie1,2, HAN Lei3   

  1. 1. Beijing Key Laboratory of Security and Privacy in Intelligent Transportation, Beijing Jiaotong University, Beijing 100044, China
    2. School of Computer and Information Technology, Beijing Jiaotong University, Beijing 100044, China
    3. Beijing Institute of Computer Technology and Applications, Beijing 100854, China
  • Received:2020-03-18 Online:2020-05-10 Published:2020-06-05
  • Contact: Jian WANG E-mail:wangjian@bjtu.edu.cn

Abstract:

This paper proposes a DDoS detection method based on a cusp catastrophe model. By analyzing the behavioral characteristics of DDoS attacks and the characteristics of the flow table under SDN, an improved control variable and state variable based on the flow table are proposed for the model. Finally, this paper also collects data through simulation experiments, and conducts multiple comparison experiments with common methods.After analyzing the experimental results, it is concluded that this method can effectively detect DDoS attacks, and has a higher detection rate and a lower false alarm rate than other methods.

Key words: SDN, DDoS attack, catastrophe model, flow table feature

CLC Number: