CFP last date
20 December 2024
Reseach Article

Detection and Prevention of DDoS attacks on Software Defined Networks Controllers for Smart Grid

by Zohaib Ahmed, Naokhaiz Afaqui, Osama Humayun
International Journal of Computer Applications
Foundation of Computer Science (FCS), NY, USA
Volume 181 - Number 45
Year of Publication: 2019
Authors: Zohaib Ahmed, Naokhaiz Afaqui, Osama Humayun
10.5120/ijca2019918572

Zohaib Ahmed, Naokhaiz Afaqui, Osama Humayun . Detection and Prevention of DDoS attacks on Software Defined Networks Controllers for Smart Grid. International Journal of Computer Applications. 181, 45 ( Mar 2019), 16-21. DOI=10.5120/ijca2019918572

@article{ 10.5120/ijca2019918572,
author = { Zohaib Ahmed, Naokhaiz Afaqui, Osama Humayun },
title = { Detection and Prevention of DDoS attacks on Software Defined Networks Controllers for Smart Grid },
journal = { International Journal of Computer Applications },
issue_date = { Mar 2019 },
volume = { 181 },
number = { 45 },
month = { Mar },
year = { 2019 },
issn = { 0975-8887 },
pages = { 16-21 },
numpages = {9},
url = { https://ijcaonline.org/archives/volume181/number45/30421-2019918572/ },
doi = { 10.5120/ijca2019918572 },
publisher = {Foundation of Computer Science (FCS), NY, USA},
address = {New York, USA}
}
%0 Journal Article
%1 2024-02-07T01:09:10.523859+05:30
%A Zohaib Ahmed
%A Naokhaiz Afaqui
%A Osama Humayun
%T Detection and Prevention of DDoS attacks on Software Defined Networks Controllers for Smart Grid
%J International Journal of Computer Applications
%@ 0975-8887
%V 181
%N 45
%P 16-21
%D 2019
%I Foundation of Computer Science (FCS), NY, USA
Abstract

With the evolution of smart grid, the operations, planning and maintenance of an electric grid have improved. On the contrary, smart grid totally relies on the computer network so there is a need of complex and efficient network management. Software defined networks (SDN) is a completely new modern architecture that allows the network to be centrally controlled or explicitly programmed using software applications. Traditionally in computer networks, the routing and switching decisions are implemented on a dedicated hardware. This hardware can be a switch or a router. But with the evolution of Software defined networks, the routing and switching function has been separated and is classified in Control and data planes respectively. Generally, in SDN, the control plane is centralized and is responsible to make a decision on what to do with the incoming packet. Once the decision is made, it is saved in the forwarding table of a switch on the data plane. While Software Defined Network (SDN) has its advantages of central management, programmability, agility and vendor neutrality, they carry a high risk of Distributed Denial of Service attack (DDoS). Centralized nature of the control plane in SDN is a huge risk factor because the attacker may bombard the control plane with malicious packets resulting in a single point of failure of the control plane. If the control plane fails, the entire smart grid network will collapse resulting in a massive outage and financial loss to the stakeholders. In this paper, we have devised a distributed approach, using blockchains, to detect and prevent DDoS attacks on the centralized control plane of SDN. We have simulated our approach using AnyLogic simulator and the results show that the proposed approach is more efficient as compared the existing techniques as it substantially reduces the risk of DDoS attacks and SDN controller overhead.

References
  1. “Smart grid”, En.wikipedia.org, 2018. [Online]. Available: https://en.wikipedia.org/wiki/Smart grid.
  2. D. Brett, “Smart Grid — Student Energy”, studentenergy.org, 2018. [Online]. Available: https://www.studentenergy.org/topics/smart-grid.
  3. M. Rouse, “What is smart grid? - Definition from WhatIs.com”, WhatIs.com, 2018. [Online]. Available: https://whatis.techtarget.com/definition/smart-grid.
  4. Jianchao Zhang, Boon-Chong Seet, TekTjing Lie and Chuan Heng Foh, “Opportunities for Software-Defined Networking in Smart Grid”, 2013 9th International Conference on Information, Communications & Signal Processing, Tainan, 2013, pp. 1-5.
  5. P. Rengaraju, V. R. Ramanan and C. Lung, “Detection and prevention of DoS attacks in Software-Defined Cloud networks”, 2017 IEEE Conference on Dependable and Secure Computing, Taipei, 2017, pp. 217-223.
  6. P. Zhang, H. Wang, C. Hu and C. Lin, “On Denial of Service Attacks in Software Defined Networks”, in IEEE Network, vol. 30, no. 6, pp. 28-33, November-December 2016.
  7. “Denial-of-service attack”, En.wikipedia.org, 2018. [On-line]. Available: https://en.wikipedia.org/wiki/Denial-of-service attack.
  8. Y. Yan, Y. Qian, H. Sharif and D. Tipper, “A Survey on Cyber Security for Smart Grid Communications”, in IEEE Communications Surveys & Tutorials, vol. 14, no. 4, pp. 998-1010, Fourth Quarter 2012.
  9. H. Wang, L. Xu and G. Gu, “FloodGuard: A DoS Attack Prevention Extension in Software-Defined Networks”, 2015 45th Annual IEEE/IFIP International Conference on Depend-able Systems and Networks, Rio de Janeiro, 2015, pp. 239-250.
  10. S. Lim, J. Ha, H. Kim, Y. Kim and S. Yang, “A SDN-oriented DDoS blocking scheme for botnet-based attacks”, 2014 Sixth International Conference on Ubiquitous and Future Networks (ICUFN), Shanghai, 2014, pp. 63-68.
  11. L. Wei and C. Fung, “FlowRanger: A request prioritizing algorithm for controller DoS attacks in Software Defined Net-works”, 2015 IEEE International Conference on Communications (ICC), London, 2015, pp. 5254-5259.
  12. A. AlEroud and I. Alsmadi, “Identifying cyber-attacks on software defined networks: An inference-based intrusion detection approach”, Journal of Network and Computer Applications, vol. 80, pp. 152-164, Feb 15 2017.
  13. P. Zhang, H. Wang, C. Hu and C. Lin, “On Denial of Service Attacks in Software Defined Networks”, in IEEE Network, vol. 30, no. 6, pp. 28-33, November-December 2016.
  14. H. Wang, L. Xu and G. Gu, “FloodGuard: A DoS Attack Prevention Extension in Software-Defined Networks”, 2015 45th Annual IEEE/IFIP International Conference on Depend-able Systems and Networks, Rio de Janeiro, 2015, pp. 239-250.
  15. B. Wang, Y. Zheng, W. Lou and Y. T. Hou, “DDoS Attack Protection in the Era of Cloud Computing and Software-Defined Networking”, 2014 IEEE 22nd International Conference on Net-work Protocols, Raleigh, NC, 2014, pp. 624-629.
  16. Q. Yan and F. R. Yu, “Distributed denial of service attacks in software-defined networking with cloud computing”, in IEEE Communications Magazine, vol. 53, no. 4, pp. 52-59, April 2015.
  17. Z. Shu, J. Wan, D. Li, J. Lin, A. Vasilakos and M. Imran, “Security in Software-Defined Networking: Threats and Coun-termeasures”, Mobile Networks and Applications, vol. 21, no. 5, pp. 764-776, 2016.
  18. M. Chen, Y. Qian, S. Mao, W. Tang and X. Yang, “Software-Defined Mobile Networks Security”, Mobile Networks and Ap-plications, vol. 21, no. 5, pp. 729-743, 2016.
  19. M. Liyanage, A. B. Abro, M. Ylianttila and A. Gurtov, “Opportunities and Challenges of Software-Defined Mobile Net-works in Network Security”, in IEEE Security & Privacy, vol. 14, no. 4, pp. 34-44, July-Aug. 2016.
  20. Q. Yan, F. R. Yu, Q. Gong and J. Li, “Software-Defined Net-working (SDN) and Distributed Denial of Service (DDoS) At-tacks in Cloud Computing Environments: A Survey, Some Re-search Issues, and Challenges”, in IEEE Communications Surveys & Tutorials, vol. 18, no. 1, pp. 602-622, First quarter 2016.
  21. R. Sahay, G. Blanc, Z. Zhang and H. Debar, “ArOMA : An SDN based autonomic DDoS mitigation framework”, Computers & Security, vol. 70, pp. 482-499, 2017.
  22. Lukaseder, Thomas, Lisa Maile, Benjamin Erb, and Frank Kargl. “SDN-Assisted Network-Based Mitigation of Slow DDoS Attacks”, arXiv preprint arXiv:1804.06750 (2018).
  23. K. Hong, Y. Kim, H. Choi and J. Park, “SDN-Assisted Slow HTTP DDoS Attack Defense Method”, in IEEE Communications Letters, vol. 22, no. 4, pp. 688-691, April 2018.
  24. Q. Yan, W. Huang, X. Luo, Q. Gong and F. R. Yu, “A Multi-Level DDoS Mitigation Framework for the Industrial Internet of Things”, in IEEE Communications Magazine, vol. 56, no. 2, pp. 30-36, Feb. 2018.
Index Terms

Computer Science
Information Sciences

Keywords

SDN Smart Grid DDoS