Jurnal INFOTEL
Vol 17 No 3 (2025): August

Enhancing SDN Controller Resilience to DDoS Attacks with IAT-Based Detection on CICIoT2023

Nugroho, Muhammad Agung (Unknown)
Kartadie, Rikie (Unknown)



Article Info

Publish Date
31 Aug 2025

Abstract

This study addresses the vulnerability of Software-Defined Networking (SDN) controllers to Distributed Denial of Service (DDoS) attacks, a critical issue for secure smart city and e-government applications. Using the CICIoT2023 dataset. Methods: We employed Random Forest with Recursive Feature Elimination and Cross-Validation (RFECV) to identify critical features for DDoS detection, validated through simulations in a Mininet/ONOS environment. Results reveal Inter-Arrival Time (IAT) as the most significant feature (importance score: 0.3200), with Controller Resources being the most vulnerable component (vulnerability score: 0.9048). DDoS-ICMP_Flood was the most effective attack (vulnerability score: 1.00), while Controller Distribution achieved a mitigation effectiveness of 0.9048. This research introduces a novel temporal feature-based detection approach, outperforming volume-based methods, and proposes adaptive mitigation strategies for SDN resilience. These findings enhance secure SDN deployment in dynamic IoT-driven environments.

Copyrights © 2025






Journal Info

Abbrev

infotel

Publisher

Subject

Computer Science & IT Electrical & Electronics Engineering

Description

Jurnal INFOTEL is a scientific journal published by Lembaga Penelitian dan Pengabdian Masyarakat (LPPM) of Institut Teknologi Telkom Purwokerto, Indonesia. Jurnal INFOTEL covers the field of informatics, telecommunication, and electronics. First published in 2009 for a printed version and published ...