Detection and Mitigation of SYN Flooding Attacks through SYN/ACK Packets and Black/White Lists

Chun Hao Yang, Jhen Ping Wu, Fang Yi Lee, Ting Yu Lin, Meng Hsun Tsai

Research output: Contribution to journalArticlepeer-review

4 Citations (Scopus)

Abstract

Software-defined networking (SDN) is a new network architecture that provides programmable networks, more efficient network management, and centralized control than traditional networks. The TCP SYN flooding attack is one of the most aggressive network attacks that can seriously degrade network performance. This paper proposes detection and mitigation modules against SYN flooding attacks in SDN. We combine those modules, which have evolved from the cuckoo hashing method and innovative whitelist, to get better performance compared to current methods Our approach reduces the traffic through the switch and improves detection accuracy, also the required register size is reduced by half for the same accuracy.

Original languageEnglish
Article number3817
JournalSensors
Volume23
Issue number8
DOIs
Publication statusPublished - 2023 Apr

All Science Journal Classification (ASJC) codes

  • Analytical Chemistry
  • Information Systems
  • Atomic and Molecular Physics, and Optics
  • Biochemistry
  • Instrumentation
  • Electrical and Electronic Engineering

Fingerprint

Dive into the research topics of 'Detection and Mitigation of SYN Flooding Attacks through SYN/ACK Packets and Black/White Lists'. Together they form a unique fingerprint.

Cite this