Affiliation:
1. University of Science and Culture
Abstract
Abstract
One of the most widespread forms of security attacks in enterprise networks is Distributed Denial-of-Service (DDOS) attacks. The purpose of DDOS attacks is to intentionally disrupt a network by sending a large amount of false requests. A new path for network design and management has been created with the introduction of Network Functions Virtualization (NFV). NFV architectures allow network functions to be defined quite dynamically. Dynamic definitions of network functions provide the best support for organizational environments. The aim of this research is to prevent DDOS attacks using NFV and SDN platforms. The research method uses the Moving Target Defense (MTD) idea to change the network routes and services location for specific detection packets. The MTD prevents attackers from performing DDOS attacks on real network topologies. A major innovation presented in this research is the selection of moving target defense types based on the processing resources of the overlay networks. The results indicates that the proposed method will save these resources and reduce the time required to check packets in networks.
Publisher
Research Square Platform LLC
Reference33 articles.
1. Rawski M (2019) “Network Topology Mutation as Moving Target Defense for Corporate Networks,” Int. J. Electron. Telecommun., vol. 65, no. 4, pp. 571–577, Oct.
2. A moving target defense and network forensics framework for ISP networks using SDN and NFV;Aydeger A;Futur Gener Comput Syst
3. Abdulqadder IH, Zou D, Aziz IT, Yuan B, Dai W (2021) “Deployment of robust security scheme in SDN based 5G network over NFV enabled cloud environment,” IEEE Trans. Emerg. Top. Comput., vol. 9, no. 2, pp. 866–877, Apr. doi: 10.1109/TETC.2018.2879714
4. Chowdhary A, Huang D, Alshamrani A, Liang H (2018) “MTD analysis and evaluation framework in software defined network (MASON),” SDN-NFVSec 2018 - Proc. 2018 ACM Int. Work. Secur. Softw. Defin. Networks Netw. Funct. Virtualization, Co-located with CODASPY 2018, vol. 2018-Janua, pp. 43–48, Mar. doi: 10.1145/3180465.3180473
5. SDN/NFV-based moving target DDOS defense mechanism;Liu CC;Adv Intell Syst Comput,2019