Research Article

SDNDefender: A Comprehensive DDoS Defense Mechanism Using Hybrid Approaches over Software Defined Networking

Table 7

Settings for emulating TCP SYN flood attack.

ParameterValue

TCP SYN packets, a benign host sends30
TCP SYN packets, an attacker sends1000
The payload of a TCP SYN packet64 bytes
The capacity of the sliding window6
The threshold of sequential entropy outliers3
The difference threshold of two hurst indexes0.12
The normal hurst threshold0.5
The significance level of the flow goodput set0.05
The confidence upper limit of the flow goodput set10000 bps
Bandwidth factor for anomaly traffic0.1
Limit of acceptable SYN requests in SRL200
Limit of replaced flow entries in SRL15
Illegal request threshold of a host in SLICOTS50