Telecommunications Science ›› 2015, Vol. 31 ›› Issue (9): 83-89.doi: 10.11959/j.issn.1000-0801.2015217

• Research and development • Previous Articles     Next Articles

An Entropy Based Anomaly Traffic Detection Approach in SDN

Mingxin Wang,Huachun Zhou,Jia Chen,Hongke Zhang   

  1. School of Electronic and Information Engineering, Beijing Jiaotong University, Beijing 100044, China
  • Online:2015-09-15 Published:2015-10-19
  • Supported by:
    The National Science and Technology Major Projects of the Ministry of Science and Technology of China;Fundamental Research Funds for the Central Universities;The National High-Tech R&D Program(863 Program)

Abstract:

SDN(software defined networking)is a novel network infrastructure which separate the control plane from the data plane. Taking advantage of the idea of SDN, a central security center was built which collected traffic from the SDN data plane entity for analyzing. The attacks can be detected based on the entropy variation of the identifier and locate the type of attack with the classification algorithm. As the anomaly patterns were detected, the security center would cooperate with the central controller to install the flow table to alleviate the influence of the attack. The anomaly traffic can be detected early and can't influence the performance of the controller. Besides, the controller can be protected from attack based on our system.

Key words: SDN, security center, entropy, DDoS

No Suggested Reading articles found!