Mitigating HTTP GET flooding attacks in SDN using NetFPGA-based OpenFlow switch
Title | Mitigating HTTP GET flooding attacks in SDN using NetFPGA-based OpenFlow switch |
Publication Type | Conference Paper |
Year of Publication | 2017 |
Authors | Viet, A. N., Van, L. P., Minh, H. A. N., Xuan, H. D., Ngoc, N. P., Huu, T. N. |
Conference Name | 2017 14th International Conference on Electrical Engineering/Electronics, Computer, Telecommunications and Information Technology (ECTI-CON) |
Date Published | jun |
Publisher | IEEE |
ISBN Number | 978-1-5386-0449-6 |
Keywords | composability, Computer crime, computer network security, DDoS, DDoS attack mitigation, DDoS Attacks, distributed denial-of-service attacks, field programmable gate arrays, Floods, Hardware, hardware-based defense system, HTTP GET Flooding, HTTP GET flooding attacks mitigation, Human Behavior, IP networks, Metrics, NetFPGA-based OpenFlow switch, OpenFlow, per-URL counting mechanism, Protocols, pubcrawl, Resiliency, SDN, software defined networking, Software-Defined Networking architecture, Switches, Uniform resource locators |
Abstract | In this paper, we propose a hardware-based defense system in Software-Defined Networking architecture to protect against the HTTP GET Flooding attacks, one of the most dangerous Distributed Denial of Service (DDoS) attacks in recent years. Our defense system utilizes per-URL counting mechanism and has been implemented on FPGA as an extension of a NetFPGA-based OpenFlow switch. |
URL | https://ieeexplore.ieee.org/document/8096324 |
DOI | 10.1109/ECTICon.2017.8096324 |
Citation Key | viet_mitigating_2017 |
- Human behavior
- Uniform resource locators
- Switches
- Software-Defined Networking architecture
- software defined networking
- SDN
- Resiliency
- pubcrawl
- Protocols
- per-URL counting mechanism
- OpenFlow
- NetFPGA-based OpenFlow switch
- Metrics
- IP networks
- composability
- HTTP GET flooding attacks mitigation
- HTTP GET Flooding
- hardware-based defense system
- Hardware
- Floods
- field programmable gate arrays
- distributed denial-of-service attacks
- DDoS Attacks
- DDoS attack mitigation
- DDoS
- computer network security
- Computer crime