Full Text

Turn on search term navigation

Copyright Eswar Publications Nov/Dec 2014

Abstract

The emergence of OpenFlow-capable switches de-couples control plane from the data flow plane so that they support programmable network and allow network administrators to have programmable central control of network traffic via a controller. The controller and its communication with switches and users become a malicious attack target. This paper explores major possible security threats and attacks on the controller of SDN and proposes a new approach to automatically and dynamically detect and monitor malicious behaviors on flow message passing and defend such attacks to ensure the security of SDN. The authors have built a FlowEye prototype at service level on Mininet API, and simulation tests are done on two feasible attacks on OpenFlow Beacon platform. The paper provides the feasibility study of such attacks and defense protection strategies in SDN security research.

Details

Title
OpenFlow Security Threat Detection and Defense Services
Author
You, Wanqing; Qian, Kai; He, Xi; Qian, Ying
Pages
2347-2351
Publication year
2014
Publication date
Nov/Dec 2014
Publisher
Eswar Publications
ISSN
09750290
e-ISSN
09750282
Source type
Scholarly Journal
Language of publication
English
ProQuest document ID
1648350538
Copyright
Copyright Eswar Publications Nov/Dec 2014