Securing SDN controller and switches from attacks

Author(s)
Tupakula, Udaya
Varadharajan, Vijay
Mishra, Preeti
Publication Date
2019-05-21
Abstract
<p>In this paper, we propose techniques for securing the SDN controller and the switches from malicious end-host attacks. Our model makes use of trusted computing and introspection-based intrusion detection to deal with attacks in SDN. We have developed a security application for the SDN controller to validate the state of the switches in the data plane and enforce the security policies to monitor the virtual machines at system call level and detect attacks. We have developed a feature extraction method named vector of n-grams which represents the traces in an efficient way without losing the ordering of system calls. The flows from the malicious hosts are dropped before they are processed by the switches or forwarded to the SDN controller. Hence, our model protects the switches and the SDN controller from the attacks.</p>
Citation
International Journal of High Performance Computing and Networking, 14(1), p. 77-91
ISSN
1740-0570
1740-0562
Link
Language
en
Publisher
Inderscience Publishers
Title
Securing SDN controller and switches from attacks
Type of document
Journal Article
Entity Type
Publication

Files:

NameSizeformatDescriptionLink