Please use this identifier to cite or link to this item: https://hdl.handle.net/1959.11/56626
Title: Mitigating attacks in software defined networks
Contributor(s): Karmakar, Kallol Krishna (author); Varadharajan, Vijay (author); Tupakula, Uday  (author)orcid 
Publication Date: 2019-01-05
DOI: 10.1007/s10586-018-02900-2
Handle Link: https://hdl.handle.net/1959.11/56626
Abstract: 

Future network innovation lies in software defined networking (SDN). This innovative technology has revolutionised the networking world for half a decade and contributes to transform legacy network architectures. This transformation blesses the networking world with improved performance and quality of service. However, security for SDN remains an afterthought. In this paper we present a detailed discussion of some of the attacks possible in SDN and techniques to deal with the attacks. The threat model will consider some significantly vulnerable areas in SDN which can lead to severe network security breaches. In particular, we describe different attacks such as attacks on the Controller, attacks on networking devices, attacks exploiting the communication links between the control plane and the data plane and different types of topology poisoning attacks. We then propose techniques to deal with some of the attacks in SDN. We make use of northbound security application on the Controller and OpenFlow agents in the networking devices for enforcing security policies in the data plane. The security application is used for specification and storage of the security policies and to make decisions on the enforcement of security policies to deal with different types of attacks. We will describe the prototype implementation of our approach using ONOS Controller and demonstrate its effectiveness against different types of attacks.

Publication Type: Journal Article
Source of Publication: Cluster Computing, v.22, p. 1143-1157
Publisher: Springer New York LLC
Place of Publication: The Netherlands
ISSN: 1573-7543
1386-7857
Fields of Research (FoR) 2020: 460407 System and network security
Socio-Economic Objective (SEO) 2020: 220405 Cybersecurity
Peer Reviewed: Yes
HERDC Category Description: C1 Refereed Article in a Scholarly Journal
Appears in Collections:Journal Article
School of Science and Technology

Files in This Item:
1 files
File SizeFormat 
Show full item record

SCOPUSTM   
Citations

17
checked on May 25, 2024

Page view(s)

290
checked on May 5, 2024

Download(s)

4
checked on May 5, 2024
Google Media

Google ScholarTM

Check

Altmetric


Items in Research UNE are protected by copyright, with all rights reserved, unless otherwise indicated.