{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,10]],"date-time":"2026-06-10T03:42:00Z","timestamp":1781062920782,"version":"3.54.1"},"reference-count":36,"publisher":"Springer Science and Business Media LLC","issue":"4","license":[{"start":{"date-parts":[[2025,9,5]],"date-time":"2025-09-05T00:00:00Z","timestamp":1757030400000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by-nc-nd\/4.0"},{"start":{"date-parts":[[2025,9,5]],"date-time":"2025-09-05T00:00:00Z","timestamp":1757030400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by-nc-nd\/4.0"}],"funder":[{"name":"The French National Research Agency","award":["ANR-20- CE39-0011"],"award-info":[{"award-number":["ANR-20- CE39-0011"]}]},{"name":"The French National Research Agency","award":["ANR-20- CE39-0011"],"award-info":[{"award-number":["ANR-20- CE39-0011"]}]},{"name":"The French National Research Agency","award":["ANR-20- CE39-0011"],"award-info":[{"award-number":["ANR-20- CE39-0011"]}]},{"name":"The French National Research Agency","award":["ANR-20- CE39-0011"],"award-info":[{"award-number":["ANR-20- CE39-0011"]}]}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["J Netw Syst Manage"],"published-print":{"date-parts":[[2025,10]]},"DOI":"10.1007\/s10922-025-09971-8","type":"journal-article","created":{"date-parts":[[2025,9,5]],"date-time":"2025-09-05T07:14:05Z","timestamp":1757056445000},"update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":4,"title":["QoSentry: A Reinforcement Learning Framework for QoS-Preserving DDoS Mitigation in Software-Defined Networks"],"prefix":"10.1007","volume":"33","author":[{"given":"Shurok","family":"Khozam","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Gregory","family":"Blanc","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"S\u00e9bastien","family":"Tixeuil","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Eric","family":"Totel","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2025,9,5]]},"reference":[{"issue":"5","key":"9971_CR1","doi-asserted-by":"publisher","first-page":"5977","DOI":"10.1007\/s12652-020-02521-x","volume":"14","author":"M Attaran","year":"2023","unstructured":"Attaran, M.: The impact of 5g on the evolution of intelligent automation and industry digitization. J. Ambient. Intell. Humaniz. Comput. 14(5), 5977\u20135993 (2023)","journal-title":"J. Ambient. Intell. Humaniz. Comput."},{"key":"9971_CR2","doi-asserted-by":"publisher","first-page":"45820","DOI":"10.1109\/ACCESS.2022.3168972","volume":"10","author":"M Rahouti","year":"2022","unstructured":"Rahouti, M., Xiong, K., Xin, Y., Jagatheesaperumal, S.K., Ayyash, M., Shaheed, M.: Sdn security review: threat taxonomy, implications, and open challenges. IEEE Access 10, 45820\u201345854 (2022)","journal-title":"IEEE Access"},{"issue":"1","key":"9971_CR3","doi-asserted-by":"publisher","first-page":"387","DOI":"10.1007\/s11277-022-09960-z","volume":"128","author":"UA Butt","year":"2023","unstructured":"Butt, U.A., Amin, R., Mehmood, M., Aldabbas, H., Alharbi, M.T., Albaqami, N.: Cloud security threats and solutions: a survey. Wirel. Pers. Commun. 128(1), 387\u2013413 (2023)","journal-title":"Wirel. Pers. Commun."},{"key":"9971_CR4","unstructured":"Cloudflare: DDoS Threat Report 2023 Q4. https:\/\/blog.cloudflare.com\/ddos-threat-report-2023-q4 Accessed April 19, 2024"},{"key":"9971_CR5","unstructured":"Juniper Networks: Corero DDoS Threat Intelligence Report. https:\/\/www.juniper.net\/content\/dam\/www\/assets\/analyst-reports\/us\/en\/2023\/corero-ddos-threat-intelligence-report.pdf. Accessed: April 19, 2024 (2023)"},{"issue":"6","key":"9971_CR6","doi-asserted-by":"publisher","first-page":"318","DOI":"10.1002\/spy2.318","volume":"6","author":"AN Lone","year":"2023","unstructured":"Lone, A.N., Mustajab, S., Alam, M.: A comprehensive study on cybersecurity challenges and opportunities in the iot world. Secur. Privacy 6(6), 318 (2023)","journal-title":"Secur. Privacy"},{"issue":"2","key":"9971_CR7","first-page":"589","volume":"25","author":"M Sewak","year":"2023","unstructured":"Sewak, M., Sahay, S.K., Rathore, H.: Deep reinforcement learning in the advanced cybersecurity threat detection and protection. Inf. Syst. Front. 25(2), 589\u2013611 (2023)","journal-title":"Inf. Syst. Front."},{"key":"9971_CR8","doi-asserted-by":"crossref","unstructured":"Khozam, S., Blanc, G., Tixeuil, S., Totel, E.: Ddos mitigation while preserving qos: a deep reinforcement learning-based approach. In: 2024 IEEE 10th International Conference on Network Softwarization (NetSoft), pp. 369\u2013374 (2024). IEEE","DOI":"10.1109\/NetSoft60951.2024.10588889"},{"key":"9971_CR9","volume-title":"Algorithms for Reinforcement Learning","author":"C Szepesv\u00e1ri","year":"2022","unstructured":"Szepesv\u00e1ri, C.: Algorithms for Reinforcement Learning. Springer, New York (2022)"},{"key":"9971_CR10","volume-title":"Deep Reinforcement Learning Hands-On: Apply Modern RL Methods to Practical Problems of Chatbots, Robotics, Discrete Optimization, Web Automation, and More","author":"M Lapan","year":"2020","unstructured":"Lapan, M.: Deep Reinforcement Learning Hands-On: Apply Modern RL Methods to Practical Problems of Chatbots, Robotics, Discrete Optimization, Web Automation, and More, 2nd edn. Packt Publishing Ltd, Birmingham (2020)","edition":"2"},{"issue":"6","key":"9971_CR11","doi-asserted-by":"publisher","first-page":"26","DOI":"10.1109\/MSP.2017.2743240","volume":"34","author":"K Arulkumaran","year":"2017","unstructured":"Arulkumaran, K., Deisenroth, M.P., Brundage, M., Bharath, A.A.: Deep reinforcement learning: a brief survey. IEEE Signal Process. Mag. 34(6), 26\u201338 (2017)","journal-title":"IEEE Signal Process. Mag."},{"key":"9971_CR12","unstructured":"Fan, J., Wang, Z., Xie, Y., Yang, Z.: A theoretical analysis of deep q-learning. In: Learning for Dynamics and Control, pp. 486\u2013489 (2020). PMLR"},{"key":"9971_CR13","doi-asserted-by":"crossref","unstructured":"Van\u00a0Hasselt, H., Guez, A., Silver, D.: Deep reinforcement learning with double q-learning. In: Proceedings of the AAAI Conference on Artificial Intelligence, vol. 30 (2016)","DOI":"10.1609\/aaai.v30i1.10295"},{"key":"9971_CR14","doi-asserted-by":"crossref","unstructured":"Van\u00a0Hasselt, H., Guez, A., Silver, D.: Deep reinforcement learning with double q-learning. In: Proceedings of the AAAI Conference on Artificial Intelligence, vol. 30 (2016)","DOI":"10.1609\/aaai.v30i1.10295"},{"key":"9971_CR15","doi-asserted-by":"crossref","unstructured":"Arjoune, Y., Faruque, S.: Smart jamming attacks in 5g new radio: a review. In: 2020 10th Annual Computing and Communication Workshop and Conference (CCWC), pp. 1010\u20131015 (2020). IEEE","DOI":"10.1109\/CCWC47524.2020.9031175"},{"key":"9971_CR16","doi-asserted-by":"publisher","DOI":"10.1016\/j.adhoc.2021.102685","volume":"123","author":"P Sharma","year":"2021","unstructured":"Sharma, P., Jain, S., Gupta, S., Chamola, V.: Role of machine learning and deep learning in securing 5g-driven industrial iot applications. Ad Hoc Netw. 123, 102685 (2021)","journal-title":"Ad Hoc Netw."},{"key":"9971_CR17","doi-asserted-by":"crossref","unstructured":"Ahmed, M.E., Kim, H.: Ddos attack mitigation in internet of things using software defined networking. In: 2017 IEEE Third International Conference on Big Data Computing Service and Applications (BigDataService), pp. 271\u2013276 (2017). IEEE","DOI":"10.1109\/BigDataService.2017.41"},{"key":"9971_CR18","doi-asserted-by":"crossref","unstructured":"Rahman, O., Quraishi, M.A.G., Lung, C.-H.: Ddos attacks detection and mitigation in sdn using machine learning. In: 2019 IEEE World Congress on Services (SERVICES), vol. 2642, pp. 184\u2013189 (2019). IEEE","DOI":"10.1109\/SERVICES.2019.00051"},{"key":"9971_CR19","doi-asserted-by":"crossref","unstructured":"Sampaio, L.S., Faustini, P.H., Silva, A.S., Granville, L.Z., Schaeffer-Filho, A.: Using nfv and reinforcement learning for anomalies detection and mitigation in sdn. In: 2018 IEEE Symposium on Computers and Communications (ISCC), pp. 00432\u201300437 (2018). IEEE","DOI":"10.1109\/ISCC.2018.8538614"},{"issue":"6","key":"9971_CR20","doi-asserted-by":"publisher","first-page":"4275","DOI":"10.1109\/TII.2021.3128581","volume":"18","author":"J Wang","year":"2021","unstructured":"Wang, J., Liu, J., Guo, H., Mao, B.: Deep reinforcement learning for securing software-defined industrial networks with distributed control plane. IEEE Trans. Ind. Inf. 18(6), 4275\u20134285 (2021)","journal-title":"IEEE Trans. Ind. Inf."},{"issue":"2","key":"9971_CR21","doi-asserted-by":"publisher","first-page":"1758","DOI":"10.1109\/TNSM.2021.3055494","volume":"18","author":"J Chen","year":"2021","unstructured":"Chen, J., Chen, J., Zhang, H.: Drl-qor: deep reinforcement learning-based qos\/qoe-aware adaptive online orchestration in nfv-enabled networks. IEEE Trans. Netw. Serv. Manag. 18(2), 1758\u20131774 (2021)","journal-title":"IEEE Trans. Netw. Serv. Manag."},{"key":"9971_CR22","doi-asserted-by":"crossref","unstructured":"Tsang, H., Salahuddin, M.A., Limam, N., Boutaba, R.: Meta-atmos+: A meta-reinforcement learning framework for threat mitigation in software-defined networks. In: 2023 IEEE 48th Conference on Local Computer Networks (LCN), pp. 1\u20139 (2023). IEEE","DOI":"10.1109\/LCN58197.2023.10223403"},{"issue":"12","key":"9971_CR23","doi-asserted-by":"publisher","first-page":"105","DOI":"10.1109\/MCOM.009.2100389","volume":"59","author":"H Tsang","year":"2021","unstructured":"Tsang, H., Akbari, I., Salahuddin, M.A., Limam, N., Boutaba, R.: Atmos+: generalizable threat mitigation in sdn using permutation equivariant and invariant deep reinforcement learning. IEEE Commun. Mag. 59(12), 105\u2013111 (2021)","journal-title":"IEEE Commun. Mag."},{"key":"9971_CR24","doi-asserted-by":"publisher","DOI":"10.1016\/j.comnet.2022.109553","volume":"222","author":"AB Neira","year":"2023","unstructured":"Neira, A.B., Kantarci, B., Nogueira, M.: Distributed denial of service attack prediction: challenges, open issues and opportunities. Comput. Netw. 222, 109553 (2023)","journal-title":"Comput. Netw."},{"key":"9971_CR25","volume-title":"Computer Networking: A Top-down Approach","author":"JF Kurose","year":"2022","unstructured":"Kurose, J.F., Ross, K.W.: Computer Networking: A Top-down Approach. Pearson, London (2022)"},{"key":"9971_CR26","unstructured":"Baeldung: Packet Transmission Time in Computer Science. https:\/\/www.baeldung.com\/cs\/packet-transmission-time"},{"key":"9971_CR27","unstructured":"DNSstuff: Network Throughput Vs. Bandwidth - What\u2019s the Difference? https:\/\/www.dnsstuff.com\/network-throughput-bandwidth"},{"key":"9971_CR28","unstructured":"Networking Signal: What Is Throughput in Networking? https:\/\/www.networkingsignal.com\/what-is-throughput-in-networking\/"},{"key":"9971_CR29","doi-asserted-by":"publisher","first-page":"314","DOI":"10.1007\/s10922-017-9417-0","volume":"26","author":"P Emmerich","year":"2018","unstructured":"Emmerich, P., Raumer, D., Gallenm\u00fcller, S., Wohlfart, F., Carle, G.: Throughput and latency of virtual switching with open vswitch: a quantitative analysis. J. Netw. Syst. Manag. 26, 314\u2013338 (2018)","journal-title":"J. Netw. Syst. Manag."},{"key":"9971_CR30","unstructured":"Sematext: What Is Latency? https:\/\/sematext.com\/blog\/what-is-latency\/"},{"key":"9971_CR31","doi-asserted-by":"publisher","first-page":"81","DOI":"10.1007\/s12243-011-0254-y","volume":"67","author":"H Dahmouni","year":"2012","unstructured":"Dahmouni, H., Girard, A., Sans\u00f2, B.: An analytical model for jitter in ip networks. Ann. Telecommun. 67, 81\u201390 (2012)","journal-title":"Ann. Telecommun."},{"issue":"25","key":"9971_CR32","doi-asserted-by":"publisher","first-page":"18215","DOI":"10.1007\/s00521-021-06850-6","volume":"35","author":"A Bignold","year":"2023","unstructured":"Bignold, A., Cruz, F., Dazeley, R., Vamplew, P., Foale, C.: Human engagement providing evaluative and informative advice for interactive reinforcement learning. Neural Comput. Appl. 35(25), 18215\u201318230 (2023)","journal-title":"Neural Comput. Appl."},{"key":"9971_CR33","unstructured":"Sutton, R.S., Barto, A.G.: Reinforcement Learning: An Introduction. MIT press, (2018)"},{"key":"9971_CR34","doi-asserted-by":"crossref","unstructured":"Li, S.E.: Reinforcement Learning for Sequential Decision and Optimal Control (2023)","DOI":"10.1007\/978-981-19-7784-8"},{"issue":"1","key":"9971_CR35","doi-asserted-by":"publisher","first-page":"11299","DOI":"10.1038\/s41598-024-66907-z","volume":"14","author":"X Wang","year":"2024","unstructured":"Wang, X., Wu, X., Zhang, Z., Zhang, Z., Zhou, W., Yu, R.: Detection and mitigation of ddos attacks based on multi-dimensional characteristics in sdn. Sci. Rep. 14(1), 11299 (2024). https:\/\/doi.org\/10.1038\/s41598-024-66907-z","journal-title":"Sci. Rep."},{"key":"9971_CR36","doi-asserted-by":"crossref","unstructured":"Akbari, I., Tahoun, E., Salahuddin, M.A., Limam, N., Boutaba, R.: Atmos: Autonomous threat mitigation in sdn using reinforcement learning. In: NOMS 2020-2020 IEEE\/IFIP Network Operations and Management Symposium, pp. 1\u20139 (2020). IEEE","DOI":"10.1109\/NOMS47738.2020.9110426"}],"container-title":["Journal of Network and Systems Management"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s10922-025-09971-8.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s10922-025-09971-8\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s10922-025-09971-8.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,9,25]],"date-time":"2025-09-25T08:17:43Z","timestamp":1758788263000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s10922-025-09971-8"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,9,5]]},"references-count":36,"journal-issue":{"issue":"4","published-print":{"date-parts":[[2025,10]]}},"alternative-id":["9971"],"URL":"https:\/\/doi.org\/10.1007\/s10922-025-09971-8","relation":{},"ISSN":["1064-7570","1573-7705"],"issn-type":[{"value":"1064-7570","type":"print"},{"value":"1573-7705","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025,9,5]]},"assertion":[{"value":"30 January 2025","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"22 July 2025","order":2,"name":"revised","label":"Revised","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"21 August 2025","order":3,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"5 September 2025","order":4,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}},{"order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Declarations"}},{"value":"The authors declare no conflict of interest.","order":2,"name":"Ethics","group":{"name":"EthicsHeading","label":"Conflict of interest"}}],"article-number":"97"}}