Mitigating HTTP GET flooding attacks in SDN using NetFPGA-based OpenFlow switch
| Title | Mitigating HTTP GET flooding attacks in SDN using NetFPGA-based OpenFlow switch |
| Publication Type | Conference Paper |
| Year of Publication | 2017 |
| Authors | Viet, A. N., Van, L. P., Minh, H. A. N., Xuan, H. D., Ngoc, N. P., Huu, T. N. |
| Conference Name | 2017 14th International Conference on Electrical Engineering/Electronics, Computer, Telecommunications and Information Technology (ECTI-CON) |
| Date Published | jun |
| Publisher | IEEE |
| ISBN Number | 978-1-5386-0449-6 |
| Keywords | composability, Computer crime, computer network security, DDoS, DDoS attack mitigation, DDoS Attacks, distributed denial-of-service attacks, field programmable gate arrays, Floods, Hardware, hardware-based defense system, HTTP GET Flooding, HTTP GET flooding attacks mitigation, Human Behavior, IP networks, Metrics, NetFPGA-based OpenFlow switch, OpenFlow, per-URL counting mechanism, Protocols, pubcrawl, Resiliency, SDN, software defined networking, Software-Defined Networking architecture, Switches, Uniform resource locators |
| Abstract | In this paper, we propose a hardware-based defense system in Software-Defined Networking architecture to protect against the HTTP GET Flooding attacks, one of the most dangerous Distributed Denial of Service (DDoS) attacks in recent years. Our defense system utilizes per-URL counting mechanism and has been implemented on FPGA as an extension of a NetFPGA-based OpenFlow switch. |
| URL | https://ieeexplore.ieee.org/document/8096324 |
| DOI | 10.1109/ECTICon.2017.8096324 |
| Citation Key | viet_mitigating_2017 |
- Human behavior
- Uniform resource locators
- Switches
- Software-Defined Networking architecture
- software defined networking
- SDN
- Resiliency
- pubcrawl
- Protocols
- per-URL counting mechanism
- OpenFlow
- NetFPGA-based OpenFlow switch
- Metrics
- IP networks
- composability
- HTTP GET flooding attacks mitigation
- HTTP GET Flooding
- hardware-based defense system
- Hardware
- Floods
- field programmable gate arrays
- distributed denial-of-service attacks
- DDoS Attacks
- DDoS attack mitigation
- DDoS
- computer network security
- Computer crime
