Please use this identifier to cite or link to this item: https://hdl.handle.net/1959.11/56793
Title: SDN-Enabled Secure IoT Architecture
Contributor(s): Karmakar, Kallol Krishna (author); Varadharajan, Vijay (author); Nepal, Surya (author); Tupakula, Uday  (author)orcid 
Publication Date: 2021-04-15
Early Online Version: 2020-12-10
DOI: 10.1109/JIOT.2020.3043740
Handle Link: https://hdl.handle.net/1959.11/56793
Abstract: 

The Internet of Things (IoT) is increasingly being used in applications ranging from precision agriculture to critical national infrastructure by deploying a large number of resource-constrained devices in hostile environments. These devices are being exploited to launch attacks in cyber systems. As a result, security has become a significant concern in the design of IoT-based applications. In this article, we present a security architecture for IoT networks by leveraging the underlying features supported by software-defined networks (SDNs). Our security architecture not only restricts network access to authenticated IoT devices but also enforces fine granular policies to secure the flows in the IoT network infrastructure. The authentication is achieved using a lightweight protocol to authenticate IoT devices. Authorization is achieved using a dynamic policy driven approach. Such an integrated security approach involving authentication of IoT devices and enables authorized flows to protect IoT networks from malicious IoT devices and attacks. We have implemented and validated our architecture using ONOS SDN Controller and Raspbian Virtual Machines, and demonstrated how the proposed security mechanisms can counteract malware packet injection, DDoS attacks using Mirai, spoofing/masquerading, and man-in-the-middle attacks. An analysis of the security and performance of the proposed security mechanisms and their applications is presented in this article.

Publication Type: Journal Article
Source of Publication: IEEE Internet of Things Journal, 8(8), p. 6549-6564
Publisher: Institute of Electrical and Electronics Engineers
Place of Publication: United States of America
ISSN: 2327-4662
Fields of Research (FoR) 2020: 460407 System and network security
Socio-Economic Objective (SEO) 2020: 220405 Cybersecurity
Peer Reviewed: Yes
HERDC Category Description: C1 Refereed Article in a Scholarly Journal
Publisher/associated links: https://doi.org/10.1109/JIOT.2020.3043740
WorldCat record: https://www.worldcat.org/title/8832495383
Appears in Collections:Journal Article
School of Science and Technology

Show full item record

SCOPUSTM   
Citations

41
checked on May 25, 2024

Page view(s)

206
checked on May 5, 2024
Google Media

Google ScholarTM

Check

Altmetric


Items in Research UNE are protected by copyright, with all rights reserved, unless otherwise indicated.