Distributed Denial of Service (DDoS) attack is a major threat to Internet based killer applications, such as independent news web sites, e-business and online games. Detecting and blocking such clever attacks has become difficult. Software-Defined Networks (SDN) has emerged as a future communication network architecture which decouples network control and forwarding. It has some particular features such as central control and programmability to combat against DDoS attack. In this paper, we survey DDoS attacks and existing defense mechanisms, and draw a conclusion of the needs of defense mechanism for successful combating against DDoS. Then, we analyze the particular features of SDN and conclude it is conducive to countermeasure DDoS attack. According the analysis, we construct a defense mechanism for DDoS in SDN. At last, we illustrate how this mechanism could combat against DDoS attacks through a working example.
Ahmed Al-ShammariPhaklen EhkanNaimah YaakobLayth Al DulaimiC Douligeris.C LorenzDS GuKshira Sagar SahooRanjan Kumar BeheraBibhudatta SahooMayank TiwaryM JarschelTN Fultz.B NunesMarc MendoncaXuan-NamKatia ObraczkaThierry TurlettiQ DuanNF Qiao YanQingxiang YuGongR SahayEJ ReiherS FayazYD WashingtonJames Saman Taghavi ZargarDavid JoshTipperU TariqMYadong WangL
Kshira Sagar SahooSanjaya Kumar PandaSampa SahooBibhudatta SahooRatnakar Dash
Moreno AmbrosinMauro ContiFabio De GaspariNishanth Devarajan
A G ZamanSalman A. KhanNazeeruddin MohammadAbdelhamied A. AteyaSadique AhmadMohammed ElAffendi