REAL

In-network DDoS detection and mitigation using INT data for IoT ecosystem

Altangerel, Gereltsetseg and Tejfel, Máté (2023) In-network DDoS detection and mitigation using INT data for IoT ecosystem. INFOCOMMUNICATIONS JOURNAL : A PUBLICATION OF THE SCIENTIFIC ASSOCIATION FOR INFOCOMMUNICATIONS (HTE), 15 (SI). pp. 49-54. ISSN 2061-2079

[img]
Preview
Text
InfocomJournal_2023_SpecISS_ICAI_8.pdf

Download (651kB) | Preview

Abstract

Due to the limited capabilities and diversity of Internet of Things (IoT) devices, it is challenging to implement robust and unified security standards for these devices. Additionally, the fact that vulnerable IoT devices are beyond the network’s control makes them susceptible to being compromised and used as bots or part of botnets, leading to a surge in attacks involving these devices in recent times. We proposed a real-time IoT anomaly detection and mitigation solution at the programmable data plane in a Software-Defined Networking (SDN) environment using Inband Network telemetry (INT) data to address this issue. As far as we know, it is the first experiment in which INT data is used to detect IoT attacks in the programmable data plane. Based on our performance evaluation, the detection delay of our proposed approach is much lower than the results of previous Distributed Denial-of-Service (DDoS) research, and the detection accuracy is similarly high.

Item Type: Article
Uncontrolled Keywords: IoT anomaly detection, data plane, In-band Network Telemetry (INT)
Subjects: Q Science / természettudomány > QA Mathematics / matematika > QA76.16-QA76.165 Communication networks, media, information society / kommunikációs hálózatok, média, információs társadalom
SWORD Depositor: MTMT SWORD
Depositing User: MTMT SWORD
Date Deposited: 14 Sep 2023 13:24
Last Modified: 14 Sep 2023 13:24
URI: http://real.mtak.hu/id/eprint/173597

Actions (login required)

Edit Item Edit Item