Skip to main content

2019 | OriginalPaper | Buchkapitel

Multipath Based Privacy Protection Method for Data Transmission in SDN

verfasst von : Na Dong, Zhigeng Han, Liangmin Wang

Erschienen in: Artificial Intelligence for Communications and Networks

Verlag: Springer International Publishing

Aktivieren Sie unsere intelligente Suche, um passende Fachinhalte oder Patente zu finden.

search-config
loading …

Abstract

With the development of Software-Defined Networking (SDN), privacy and security issues have become an urgent problem to be solved. Although there are many ways to solve these problems, the existing technology represented by encryption cannot effectively deal with traffic analysis attacks, and there are also key management problems. For this reason, we propose a privacy protection method for SDN data transmission based on multipath, including path searching procedure for searching for all paths between the sender and the receiver, and path filtering procedure for filtering out paths to reduce path correlation, and path selection procedure for randomly selecting one path to disturbed the traffic similarity between multiple transmission. The experiment results show that our method is more effective, less similarity of traffic compared with Multipath-Floyd method and single-path method, respectively. Moreover, it is difficult for attackers to capture the traffic feature and do not need key management, which reduces the cost of the controller.

Sie haben noch keine Lizenz? Dann Informieren Sie sich jetzt über unsere Produkte:

Springer Professional "Wirtschaft+Technik"

Online-Abonnement

Mit Springer Professional "Wirtschaft+Technik" erhalten Sie Zugriff auf:

  • über 102.000 Bücher
  • über 537 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Maschinenbau + Werkstoffe
  • Versicherung + Risiko

Jetzt Wissensvorsprung sichern!

Springer Professional "Technik"

Online-Abonnement

Mit Springer Professional "Technik" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 390 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Maschinenbau + Werkstoffe




 

Jetzt Wissensvorsprung sichern!

Springer Professional "Wirtschaft"

Online-Abonnement

Mit Springer Professional "Wirtschaft" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 340 Zeitschriften

aus folgenden Fachgebieten:

  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Versicherung + Risiko




Jetzt Wissensvorsprung sichern!

Literatur
2.
Zurück zum Zitat Dulinski, Z., Rzym, G., Cholda, P.: MPLS-based reduction of flow table entries in SDN switches supporting multipath transmission. Networking and Internet Architecture arXiv:1805.07993 (2018) Dulinski, Z., Rzym, G., Cholda, P.: MPLS-based reduction of flow table entries in SDN switches supporting multipath transmission. Networking and Internet Architecture arXiv:​1805.​07993 (2018)
3.
Zurück zum Zitat Guan, Y., Lei, W., Zhang, W., Liu, S., Li, H.: Scalable orchestration of software defined service overlay network for multipath transmission. Comput. Netw. 137, 132–146 (2018)CrossRef Guan, Y., Lei, W., Zhang, W., Liu, S., Li, H.: Scalable orchestration of software defined service overlay network for multipath transmission. Comput. Netw. 137, 132–146 (2018)CrossRef
4.
Zurück zum Zitat Guillen, L., Izumi, S., Abe, T., Suganuma, T., Muraoka, H.: SDN implementation of multipath discovery to improve network performance in distributed storage systems. In: 2017 13th International Conference on Network and Service Management (CNSM), vol. 1, pp. 1–4. IEEE Computer Society, Tokyo, November 2017. https://doi.org/10.23919/CNSM.2017.8256054 Guillen, L., Izumi, S., Abe, T., Suganuma, T., Muraoka, H.: SDN implementation of multipath discovery to improve network performance in distributed storage systems. In: 2017 13th International Conference on Network and Service Management (CNSM), vol. 1, pp. 1–4. IEEE Computer Society, Tokyo, November 2017. https://​doi.​org/​10.​23919/​CNSM.​2017.​8256054
5.
Zurück zum Zitat Jose, J., Rigi, R.C.: A comparative study of topology enabled and topology hiding multipath routing protocols in MANETs. In: 2015 International Conference on Electrical, Electronics, Signals, Communication and Optimization (EESCO), Visakhapatnam, India, pp. 1–4, January 2015. https://doi.org/10.1109/EESCO.2015.7254001 Jose, J., Rigi, R.C.: A comparative study of topology enabled and topology hiding multipath routing protocols in MANETs. In: 2015 International Conference on Electrical, Electronics, Signals, Communication and Optimization (EESCO), Visakhapatnam, India, pp. 1–4, January 2015. https://​doi.​org/​10.​1109/​EESCO.​2015.​7254001
6.
Zurück zum Zitat Kreutz, D., Ramos, F.M., Verissimo, P.: Towards secure and dependable Software-Defined Networks. In: Proceedings of the Second ACM SIGCOMM Workshop on Hot Topics in Software Defined Networking, HotSDN 2013, pp. 55–60. ACM, New York (2013). https://doi.org/10.1145/2491185.2491199 Kreutz, D., Ramos, F.M., Verissimo, P.: Towards secure and dependable Software-Defined Networks. In: Proceedings of the Second ACM SIGCOMM Workshop on Hot Topics in Software Defined Networking, HotSDN 2013, pp. 55–60. ACM, New York (2013). https://​doi.​org/​10.​1145/​2491185.​2491199
7.
Zurück zum Zitat Liu, H., Wang, Z., Miao, F.: Concurrent multipath traffic impersonating for enhancing communication privacy. Int. J. Commun. Syst. 27(11), 2985–2996 (2014) Liu, H., Wang, Z., Miao, F.: Concurrent multipath traffic impersonating for enhancing communication privacy. Int. J. Commun. Syst. 27(11), 2985–2996 (2014)
8.
Zurück zum Zitat Lou, W., Liu, W., Zhang, Y., Fang, Y.: SPREAD: improving network security by multipath routing in mobile ad hoc networks. Wireless Netw. 15(3), 279–294 (2009)CrossRef Lou, W., Liu, W., Zhang, Y., Fang, Y.: SPREAD: improving network security by multipath routing in mobile ad hoc networks. Wireless Netw. 15(3), 279–294 (2009)CrossRef
9.
Zurück zum Zitat Nakahara, M., Shinkuma, R., Yamaguchi, K., Yamaguchi, K.: Tradeoff between privacy protection and network resource in community associated network virtualization. In: 2015 IEEE 26th Annual International Symposium on Personal, Indoor, and Mobile Radio Communications (PIMRC), Hong Kong, China, pp. 2143–2148, August 2015. https://doi.org/10.1109/PIMRC.2015.7343652 Nakahara, M., Shinkuma, R., Yamaguchi, K., Yamaguchi, K.: Tradeoff between privacy protection and network resource in community associated network virtualization. In: 2015 IEEE 26th Annual International Symposium on Personal, Indoor, and Mobile Radio Communications (PIMRC), Hong Kong, China, pp. 2143–2148, August 2015. https://​doi.​org/​10.​1109/​PIMRC.​2015.​7343652
10.
Zurück zum Zitat Othman, J.B., Mokdad, L.: Enhancing data security in ad hoc networks based on multipath routing. J. Parallel Distrib. Comput. 70(3), 309–316 (2010)CrossRef Othman, J.B., Mokdad, L.: Enhancing data security in ad hoc networks based on multipath routing. J. Parallel Distrib. Comput. 70(3), 309–316 (2010)CrossRef
11.
12.
Zurück zum Zitat Sha, L., He, L., Fu, J., Sun, J., Li, P.: SDN-based sensitive information SI protection: sensitivity-degree measurement in software and data lifetime supervisor in Software Defined Network. Sec. Commun. Netw. 9(13), 1944–1957 (2016) Sha, L., He, L., Fu, J., Sun, J., Li, P.: SDN-based sensitive information SI protection: sensitivity-degree measurement in software and data lifetime supervisor in Software Defined Network. Sec. Commun. Netw. 9(13), 1944–1957 (2016)
13.
Zurück zum Zitat Wang, Y., Chau, P., Chen, F.: Towards a secured network virtualization. Comput. Netw. 104(C), 55–65 (2016)CrossRef Wang, Y., Chau, P., Chen, F.: Towards a secured network virtualization. Comput. Netw. 104(C), 55–65 (2016)CrossRef
14.
Zurück zum Zitat Zeng, T., Meng, S., Wang, M., Zhu, L., Fan, L.: Self-adaptive anonymous communication scheme under SDN architecture. In: 2015 IEEE 34th International Performance Computing and Communications Conference (IPCCC), Nanjing, China, pp. 1–8. December 2015. https://doi.org/10.1109/PCCC.2015.7410337 Zeng, T., Meng, S., Wang, M., Zhu, L., Fan, L.: Self-adaptive anonymous communication scheme under SDN architecture. In: 2015 IEEE 34th International Performance Computing and Communications Conference (IPCCC), Nanjing, China, pp. 1–8. December 2015. https://​doi.​org/​10.​1109/​PCCC.​2015.​7410337
15.
Zurück zum Zitat Zhang, Y., Tan, Y., Jie, T., Qi, H., Wang, G., Li, Z.: TOHIP: a topology-hiding multipath routing protocol in mobile ad hoc networks. Ad Hoc Netw. 21(5), 109–122 (2014)CrossRef Zhang, Y., Tan, Y., Jie, T., Qi, H., Wang, G., Li, Z.: TOHIP: a topology-hiding multipath routing protocol in mobile ad hoc networks. Ad Hoc Netw. 21(5), 109–122 (2014)CrossRef
Metadaten
Titel
Multipath Based Privacy Protection Method for Data Transmission in SDN
verfasst von
Na Dong
Zhigeng Han
Liangmin Wang
Copyright-Jahr
2019
DOI
https://doi.org/10.1007/978-3-030-22971-9_11

Premium Partner