A method for openflow controller to resist ddos attack
A controller and switch technology, applied in the field of network communication, can solve the problems of resource consumption and the inability of legitimate users to obtain network services in time, and achieve the effects of reducing the number, reducing redundancy consumption, and improving robustness
- Summary
- Abstract
- Description
- Claims
- Application Information
AI Technical Summary
Problems solved by technology
Method used
Image
Examples
Embodiment Construction
[0042] The present invention will be further described below in conjunction with the accompanying drawings and specific embodiments.
[0043] The present invention is according to the technical characteristic of SDN network and DDoS attack, a set of light, efficient controller of design prevents DDoS attack (Controller-Anti-DDoS, CADDoS) method, CADDoS mainly solves following two problems:
[0044] (1) A reasonable speed limit is imposed on the flow that arrives in the network, not only to prevent a large number of Packet_In messages from affecting the performance of the controller, but also to ensure the service rate of the flow in the network.
[0045] (2) Implement detection and tracking of DDoS flows, and filter DDoS flows. It mainly consists of two mechanisms: the security speed limit mechanism and the DDoS detection and tracking mechanism.
[0046] The main idea of the CADDoS method is:
[0047] (1) Transfer flow table and speed limit function: In order to prevent a ...
PUM
Login to View More Abstract
Description
Claims
Application Information
Login to View More 


