Related Experiment Video
Updated: May 28, 2025

07:49
Automated Deployment of an Internet Protocol Telephony Service on Unmanned Aerial Vehicles Using Network Functions Virtualization
Published on: November 26, 2019
8.0K
SDN TCP-SYN Dataset: A dataset for TCP-SYN flood DDoS attack detection in software-defined networks
1School of Computer Science and Engineering, Shri Mata Vaishno Devi University, Katra, India.
Data in Brief
|February 10, 2025
Summary
This study introduces the TCP-SYNC SDN dataset for detecting Denial of Service (DoS) attacks in Software-Defined Networking (SDN). It provides labeled network traffic data crucial for developing advanced security solutions.
Area of Science:
- Computer Science
- Network Security
- Cybersecurity
Background:
- Software-Defined Networking (SDN) environments are increasingly vulnerable to sophisticated cyberattacks.
- Distributed Denial of Service (DDoS) attacks, particularly TCP-SYN floods, pose a significant threat to network availability.
- Existing datasets may not adequately represent the complexities of modern network traffic and attack vectors.
Purpose of the Study:
- To introduce and describe the TCP-SYNC SDN dataset, a novel resource for DDoS attack detection research.
- To provide a comprehensive collection of labeled network traffic data, including normal and TCP-SYN flood attack traffic.
- To facilitate advancements in machine learning-based traffic classification and anomaly detection within SDN.
Main Methods:
- The dataset was generated in a controlled testbed environment using Mininet (v2.3.0).
- Real internet traffic from browsing sessions via Google Chrome was captured using Wireshark (v3.0.2).
- Flow-level metrics were collected for both benign and malicious (TCP-SYN flood) traffic scenarios.
Main Results:
- The TCP-SYNC SDN dataset offers labeled, flow-level network traffic data.
- It encompasses both normal traffic patterns and specific TCP-SYN flood attack instances.
- The dataset is validated for its utility in training and evaluating DDoS detection models.
Conclusions:
- The TCP-SYNC SDN dataset is a valuable and publicly available resource for the cybersecurity research community.
- It enables researchers and practitioners to develop and test robust DDoS detection mechanisms for SDN.
- This dataset will accelerate progress in machine learning applications for network security.

