Novel framework for enhancing security of SDN based VPLS architecture

被引:0
作者
Gaur, Kuntal [1 ]
Rawat, Umashankar [2 ]
Acharya, Saket [3 ]
Kumar, Pradeep [1 ]
Kalla, Anshuman [4 ]
机构
[1] Manipal Univ Jaipur, Dept Comp Applicat, Jaipur, Rajasthan, India
[2] Manipal Univ Jaipur, Dept Comp Sci & Engn, Jaipur, Rajasthan, India
[3] ACM, Jaipur, Rajasthan, India
[4] Uka Tarsadia Univ, Chhotubhai Copalbhai Patel Inst Technol, Dept Comp Engn, Bardoli, Gujarat, India
关键词
SDN; VPLS; TPM; DDoS; Security;
D O I
10.47974/JDMSC-1985
中图分类号
O29 [应用数学];
学科分类号
070104 ;
摘要
Software-Defined Networking (SDN) is an emerging technology that enables the extension of a single Ethernet broadcast domain over a wide area network. However, there are still several major network security threats that could lead to network and resource unavailability, man-in-the-middle attacks, cryptographic flaws, and other vulnerabilities. This paper presents a method that proposes the use of Trusted Platform Module (TPM)-based SDN Virtual Private LAN Services (VPLS), which is intended to provide a secure solution that can help mitigate various network attacks. Open VSwitch (OVS) is a virtual switch that can be used to implement SDN-based VPLS networks. Direct Anonymous Attestation (DAA) is used to verify the authenticity of hardware devices without revealing any identifying information about the devices. The proposed architecture is implemented in a testbed to analyze the performance. The results show that TPM can be utilized in an SDN network to enhance security by securely storing encryption keys and certificates
引用
收藏
页码:1331 / 1343
页数:13
相关论文
共 50 条
  • [21] A SDN/NFV Security Protection Architecture with a Function Composition Algorithm Based on Trie
    Hao, Zheng
    Lin, Zhaowen
    Li, Ran
    PROCEEDINGS OF THE 2ND INTERNATIONAL CONFERENCE ON COMPUTER SCIENCE AND APPLICATION ENGINEERING (CSAE2018), 2018,
  • [22] Enhancing Security Education Through Designing SDN Security Labs in CloudLab
    Park, Younghee
    Hu, Hongxin
    Yuan, Xiaohong
    Li, Hongda
    SIGCSE'18: PROCEEDINGS OF THE 49TH ACM TECHNICAL SYMPOSIUM ON COMPUTER SCIENCE EDUCATION, 2018, : 185 - 190
  • [23] SMART: Shared Memory based SDN Architecture to Resist DDoS ATtacks
    Belguith, Sana
    Asghar, Muhammad Rizwan
    Wang, Song
    Gomez, Karina
    Russello, Giovanni
    PROCEEDINGS OF THE 17TH INTERNATIONAL JOINT CONFERENCE ON E-BUSINESS AND TELECOMMUNICATIONS (SECRYPT), VOL 1, 2020, : 608 - 617
  • [24] A Novel Framework for Misbehavior Detection in SDN-based VANET
    Sultana, Rukhsar
    Grover, Jyoti
    Tripathi, Meenakshi
    2020 IEEE INTERNATIONAL CONFERENCE ON ADVANCED NETWORKS AND TELECOMMUNICATIONS SYSTEMS (IEEE ANTS), 2020,
  • [25] A Security Enforcement Framework for SDN Controller Using Game Theoretic Approach
    Priyadarsini, Madhukrishna
    Bera, Padmalochan
    Das, Sajal K.
    Rahman, Mohammad Ashiqur
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2023, 20 (02) : 1500 - 1515
  • [26] Block-SDoTCloud: Enhancing Security of Cloud Storage through Blockchain-based SDN in IoT Network
    Rahman, Anichur
    Islam, Md Jahidul
    Khan, Md Saikat Islam
    Kabir, Sumaiya
    Pritom, Ahmed Iqbal
    Karim, Md Razaul
    2020 2ND INTERNATIONAL CONFERENCE ON SUSTAINABLE TECHNOLOGIES FOR INDUSTRY 4.0 (STI), 2020,
  • [27] A Survey of the Main Security Issues and Solutions for the SDN Architecture
    Jimenez, Maria B.
    Fernandez, David
    Eduardo Rivadeneira, Jorge
    Bellido, Luis
    Cardenas, Andres
    IEEE ACCESS, 2021, 9 : 122016 - 122038
  • [28] SDN Based Security Services
    ZHANG Yunyong
    XU Lei
    TAO Ye
    ZTE Communications, 2018, 16 (04) : 9 - 14
  • [29] WSN Architecture Based on SDN
    Xu, Qiaozhi
    Zhao, Jie
    PROCEEDINGS OF THE 4TH INTERNATIONAL CONFERENCE ON INFORMATION SYSTEMS AND COMPUTING TECHNOLOGY, 2016, 64 : 159 - 163
  • [30] A SOFTWARE DEFINED SECURITY ARCHITECTURE FOR SDN-BASED 5G NETWORK
    Liang, Xiaodong
    Qiu, Xiaofeng
    PROCEEDINGS OF 2016 5TH IEEE INTERNATIONAL CONFERENCE ON NETWORK INFRASTRUCTURE AND DIGITAL CONTENT (IEEE IC-NIDC 2016), 2016, : 17 - 21