scispace - formally typeset
Open AccessJournal ArticleDOI

Detection and Prevention of DDoS attacks on Software Defined Networks Controllers for Smart Grid

Zohaib Ahmed, +2 more
- 15 Mar 2019 - 
- Vol. 181, Iss: 45, pp 16-21
Reads0
Chats0
TLDR
A distributed approach, using blockchains, to detect and prevent DDoS attacks on the centralized control plane of SDN is devised and the results show that the proposed approach is more efficient as compared to the existing techniques as it substantially reduces the risk ofDDoS attacks and SDN controller overhead.
Abstract
With the evolution of smart grid, the operations, planning and maintenance of an electric grid have improved. On the contrary, smart grid totally relies on the computer network so there is a need of complex and efficient network management. Software defined networks (SDN) is a completely new modern architecture that allows the network to be centrally controlled or explicitly programmed using software applications. Traditionally in computer networks, the routing and switching decisions are implemented on a dedicated hardware. This hardware can be a switch or a router. But with the evolution of Software defined networks, the routing and switching function has been separated and is classified in Control and data planes respectively. Generally, in SDN, the control plane is centralized and is responsible to make a decision on what to do with the incoming packet. Once the decision is made, it is saved in the forwarding table of a switch on the data plane. While Software Defined Network (SDN) has its advantages of central management, programmability, agility and vendor neutrality, they carry a high risk of Distributed Denial of Service attack (DDoS). Centralized nature of the control plane in SDN is a huge risk factor because the attacker may bombard the control plane with malicious packets resulting in a single point of failure of the control plane. If the control plane fails, the entire smart grid network will collapse resulting in a massive outage and financial loss to the stakeholders. In this paper, we have devised a distributed approach, using blockchains, to detect and prevent DDoS attacks on the centralized control plane of SDN. We have simulated our approach using AnyLogic simulator and the results show that the proposed approach is more efficient as compared the existing techniques as it substantially reduces the risk of DDoS attacks and SDN controller overhead.

read more

Content maybe subject to copyright    Report

Citations
More filters
Proceedings Article

Smart grid

TL;DR: The use of digital information and controls technology to improve reliability, security, and efficiency of the electric grid.
Journal ArticleDOI

Blockchain for Cybersecurity in Smart Grid: A Comprehensive Survey

TL;DR: A comprehensive survey on blockchain for smart gird cybersecurity presents the latest insights of ideas, architectures, and techniques of implementation that are relevant to blockchain's application in the smart grid for cybersecurity.
Proceedings ArticleDOI

Intelligent software defined networking: Long short term memory‐graded rated unit enabled block‐attack model to tackle distributed denial of service attacks

TL;DR: In this paper , the authors proposed an intrusion detection and prevention system (IDPS) based on a block-attack model using a long short term memory (LSTM) and graded rated unit (GRU) model.
Proceedings ArticleDOI

BARRETT BlockchAin Regulated REmote aTTestation

TL;DR: This paper proposes the BARRETT architecture which uses a Public Ethereum Network (PEN) in conjunction with an RA protocol to protect the prover from CDoS attacks, and deters CDoS by forcing the verifier to pay a fee in Ether cryptocurrency every time they wish to send an Attestation Request to a prover.
References
More filters
Journal ArticleDOI

A Survey on Cyber Security for Smart Grid Communications

TL;DR: The cyber security requirements and the possible vulnerabilities in smart grid communications are summarized and the current solutions on cyber security for smartgrid communications are surveyed.
Proceedings ArticleDOI

FloodGuard: A DoS Attack Prevention Extension in Software-Defined Networks

TL;DR: This paper addresses one serious SDN-specific attack, i.e., data-to-control plane saturation attack, which overloads the infrastructure of SDN networks and introduces an efficient, lightweight and protocol-independent defense framework forSDN networks.
Journal ArticleDOI

Distributed denial of service attacks in software-defined networking with cloud computing

TL;DR: It is shown that SDN brings a new chance to defeat DDoS attacks in cloud computing environments, and good features of SDN in defeating DDoS attacked, and a number of challenges that need to be addressed to mitigate DDoS attached in SDN with cloud computing.
Proceedings ArticleDOI

DDoS Attack Protection in the Era of Cloud Computing and Software-Defined Networking

TL;DR: A DDoS attack mitigation architecture that integrates a highly programmable network monitoring to enable attack detection and a flexible control structure to allow fast and specific attack reaction and shows that the architecture can effectively and efficiently address the security challenges brought by the new network paradigm.
Proceedings Article

Smart grid

TL;DR: The use of digital information and controls technology to improve reliability, security, and efficiency of the electric grid.
Related Papers (5)