Skip to main content

2019 | OriginalPaper | Buchkapitel

Mitigation of DoS in SDN Using Path Randomization

verfasst von : N. A. Bharathi, V. Vetriselvi, Ranjani Parthasarathi

Erschienen in: International Conference on Computer Networks and Communication Technologies

Verlag: Springer Singapore

Aktivieren Sie unsere intelligente Suche, um passende Fachinhalte oder Patente zu finden.

search-config
loading …

Abstract

SDN is a recent blooming architecture which provides greater flexibility for the network professionals. SDN decouples the control logic from the forwarding devices, and the centralized controllers decide the forwarding rules in the network. In spite of the flexibility provided, it is vulnerable to many kinds of attacks. Our focus is on mitigating the denial-of-service attack on flow tables which can result in severe degradation of the network switches. In order to address this issue, we propose a path randomization technique and flow aggregation algorithm. The performance of the system has been evaluated in a simulation environment which has shown a positive result.

Sie haben noch keine Lizenz? Dann Informieren Sie sich jetzt über unsere Produkte:

Springer Professional "Wirtschaft+Technik"

Online-Abonnement

Mit Springer Professional "Wirtschaft+Technik" erhalten Sie Zugriff auf:

  • über 102.000 Bücher
  • über 537 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Maschinenbau + Werkstoffe
  • Versicherung + Risiko

Jetzt Wissensvorsprung sichern!

Springer Professional "Technik"

Online-Abonnement

Mit Springer Professional "Technik" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 390 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Maschinenbau + Werkstoffe




 

Jetzt Wissensvorsprung sichern!

Springer Professional "Wirtschaft"

Online-Abonnement

Mit Springer Professional "Wirtschaft" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 340 Zeitschriften

aus folgenden Fachgebieten:

  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Versicherung + Risiko




Jetzt Wissensvorsprung sichern!

Literatur
1.
Zurück zum Zitat Kreutz, D., Ramos, F.M.V., Verissimo, P., Rothenberg, C., Azodol-molky, S., Uhlig, S.: Software-defined networking: a comprehensive survey. Proc. IEEE 130(01), 14–76 (2014)CrossRef Kreutz, D., Ramos, F.M.V., Verissimo, P., Rothenberg, C., Azodol-molky, S., Uhlig, S.: Software-defined networking: a comprehensive survey. Proc. IEEE 130(01), 14–76 (2014)CrossRef
3.
Zurück zum Zitat Dridi, L., Faten Zhani, M.: SDN-guard: DoS attacks mitigation in SDN networks. In: 5th IEEE International Conference on Cloud Networking, pp. 213–217 (2016) Dridi, L., Faten Zhani, M.: SDN-guard: DoS attacks mitigation in SDN networks. In: 5th IEEE International Conference on Cloud Networking, pp. 213–217 (2016)
4.
Zurück zum Zitat Zhang, P., Wang, H., Hu, C., Lin, C.: On denial of service attacks in software defined networks, network forensics and surveillance for emerging networks. IEEE Netw., 28–33 (2016)CrossRef Zhang, P., Wang, H., Hu, C., Lin, C.: On denial of service attacks in software defined networks, network forensics and surveillance for emerging networks. IEEE Netw., 28–33 (2016)CrossRef
5.
Zurück zum Zitat Kandoi, R., Antikainen, M.: Denial-of-service attacks in OpenFlow SDN networks. In: 1st International Workshop on Security for Emerging Distributed Network Technologies (DISSECT). IEEE, pp. 1322–1326 (2015) Kandoi, R., Antikainen, M.: Denial-of-service attacks in OpenFlow SDN networks. In: 1st International Workshop on Security for Emerging Distributed Network Technologies (DISSECT). IEEE, pp. 1322–1326 (2015)
6.
Zurück zum Zitat Shang, G., Zhe, P., Bin, X., Aiqun, H., Kui, R.: FloodDefender: protecting data and control plane resources under SDN-aimed DoS attacks. In: IEEE INFOCOM, IEEE Conference on Computer Communications (2017) Shang, G., Zhe, P., Bin, X., Aiqun, H., Kui, R.: FloodDefender: protecting data and control plane resources under SDN-aimed DoS attacks. In: IEEE INFOCOM, IEEE Conference on Computer Communications (2017)
7.
Zurück zum Zitat Kuerban, M., Tian, Y., Yang, Q., Jia, Y., Huebert, B., Poss, D.: ‘FlowSec: DOS attack mitigation strategy on SDN controller. IEEE (2016) Kuerban, M., Tian, Y., Yang, Q., Jia, Y., Huebert, B., Poss, D.: ‘FlowSec: DOS attack mitigation strategy on SDN controller. IEEE (2016)
8.
Zurück zum Zitat Yoshioka, K., Hirata, K., Yamamoto, M.: Routing Method with Flow Entry Aggregation for Software-Defined Networking. IEEE (2017) Yoshioka, K., Hirata, K., Yamamoto, M.: Routing Method with Flow Entry Aggregation for Software-Defined Networking. IEEE (2017)
9.
Zurück zum Zitat Kang, N., Liu, Z., Rexford, J., Walker, D.: Optimizing the one big switch abstraction in software-defined networks. IEEE Trans. Comput. 4(1), 1–10 (2013) Kang, N., Liu, Z., Rexford, J., Walker, D.: Optimizing the one big switch abstraction in software-defined networks. IEEE Trans. Comput. 4(1), 1–10 (2013)
11.
Zurück zum Zitat Giroire, F., Moulierac, J., Khoa Phan, T.: Optimizing rule placement in software-defined networks for energy-aware routing. In: Globecom Symposium on Selected Areas in Communications, GC14 SAC Green Communication Systems and Networks. IEEE, pp. 2523–2529 (2014) Giroire, F., Moulierac, J., Khoa Phan, T.: Optimizing rule placement in software-defined networks for energy-aware routing. In: Globecom Symposium on Selected Areas in Communications, GC14 SAC Green Communication Systems and Networks. IEEE, pp. 2523–2529 (2014)
12.
Zurück zum Zitat Huang, H., Guo, S., Li, P., Ye, B., Stojmenovic, I.: Joint optimization of rule placement and traffic engineering for QoS provisioning in software defined network. IEEE Trans. Comput. 3(1), 1–14 (2015) (Digests 9th Annual Conference on Magnetics Japan, p. 301) Huang, H., Guo, S., Li, P., Ye, B., Stojmenovic, I.: Joint optimization of rule placement and traffic engineering for QoS provisioning in software defined network. IEEE Trans. Comput. 3(1), 1–14 (2015) (Digests 9th Annual Conference on Magnetics Japan, p. 301)
Metadaten
Titel
Mitigation of DoS in SDN Using Path Randomization
verfasst von
N. A. Bharathi
V. Vetriselvi
Ranjani Parthasarathi
Copyright-Jahr
2019
Verlag
Springer Singapore
DOI
https://doi.org/10.1007/978-981-10-8681-6_22

Neuer Inhalt