Novel framework for enhancing security of SDN based VPLS architecture

被引:0
作者
Gaur, Kuntal [1 ]
Rawat, Umashankar [2 ]
Acharya, Saket [3 ]
Kumar, Pradeep [1 ]
Kalla, Anshuman [4 ]
机构
[1] Manipal Univ Jaipur, Dept Comp Applicat, Jaipur, Rajasthan, India
[2] Manipal Univ Jaipur, Dept Comp Sci & Engn, Jaipur, Rajasthan, India
[3] ACM, Jaipur, Rajasthan, India
[4] Uka Tarsadia Univ, Chhotubhai Copalbhai Patel Inst Technol, Dept Comp Engn, Bardoli, Gujarat, India
关键词
SDN; VPLS; TPM; DDoS; Security;
D O I
10.47974/JDMSC-1985
中图分类号
O29 [应用数学];
学科分类号
070104 ;
摘要
Software-Defined Networking (SDN) is an emerging technology that enables the extension of a single Ethernet broadcast domain over a wide area network. However, there are still several major network security threats that could lead to network and resource unavailability, man-in-the-middle attacks, cryptographic flaws, and other vulnerabilities. This paper presents a method that proposes the use of Trusted Platform Module (TPM)-based SDN Virtual Private LAN Services (VPLS), which is intended to provide a secure solution that can help mitigate various network attacks. Open VSwitch (OVS) is a virtual switch that can be used to implement SDN-based VPLS networks. Direct Anonymous Attestation (DAA) is used to verify the authenticity of hardware devices without revealing any identifying information about the devices. The proposed architecture is implemented in a testbed to analyze the performance. The results show that TPM can be utilized in an SDN network to enhance security by securely storing encryption keys and certificates
引用
收藏
页码:1331 / 1343
页数:13
相关论文
共 50 条
[21]   A SDN/NFV Security Protection Architecture with a Function Composition Algorithm Based on Trie [J].
Hao, Zheng ;
Lin, Zhaowen ;
Li, Ran .
PROCEEDINGS OF THE 2ND INTERNATIONAL CONFERENCE ON COMPUTER SCIENCE AND APPLICATION ENGINEERING (CSAE2018), 2018,
[22]   Enhancing Security Education Through Designing SDN Security Labs in CloudLab [J].
Park, Younghee ;
Hu, Hongxin ;
Yuan, Xiaohong ;
Li, Hongda .
SIGCSE'18: PROCEEDINGS OF THE 49TH ACM TECHNICAL SYMPOSIUM ON COMPUTER SCIENCE EDUCATION, 2018, :185-190
[23]   SMART: Shared Memory based SDN Architecture to Resist DDoS ATtacks [J].
Belguith, Sana ;
Asghar, Muhammad Rizwan ;
Wang, Song ;
Gomez, Karina ;
Russello, Giovanni .
PROCEEDINGS OF THE 17TH INTERNATIONAL JOINT CONFERENCE ON E-BUSINESS AND TELECOMMUNICATIONS (SECRYPT), VOL 1, 2020, :608-617
[24]   A Security Enforcement Framework for SDN Controller Using Game Theoretic Approach [J].
Priyadarsini, Madhukrishna ;
Bera, Padmalochan ;
Das, Sajal K. ;
Rahman, Mohammad Ashiqur .
IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2023, 20 (02) :1500-1515
[25]   A Novel Framework for Misbehavior Detection in SDN-based VANET [J].
Sultana, Rukhsar ;
Grover, Jyoti ;
Tripathi, Meenakshi .
2020 IEEE INTERNATIONAL CONFERENCE ON ADVANCED NETWORKS AND TELECOMMUNICATIONS SYSTEMS (IEEE ANTS), 2020,
[26]   A Survey of the Main Security Issues and Solutions for the SDN Architecture [J].
Jimenez, Maria B. ;
Fernandez, David ;
Eduardo Rivadeneira, Jorge ;
Bellido, Luis ;
Cardenas, Andres .
IEEE ACCESS, 2021, 9 :122016-122038
[27]   Block-SDoTCloud: Enhancing Security of Cloud Storage through Blockchain-based SDN in IoT Network [J].
Rahman, Anichur ;
Islam, Md Jahidul ;
Khan, Md Saikat Islam ;
Kabir, Sumaiya ;
Pritom, Ahmed Iqbal ;
Karim, Md Razaul .
2020 2ND INTERNATIONAL CONFERENCE ON SUSTAINABLE TECHNOLOGIES FOR INDUSTRY 4.0 (STI), 2020,
[28]   SDN Based Security Services [J].
ZHANG Yunyong ;
XU Lei ;
TAO Ye .
ZTE Communications, 2018, 16 (04) :9-14
[29]   WSN Architecture Based on SDN [J].
Xu, Qiaozhi ;
Zhao, Jie .
PROCEEDINGS OF THE 4TH INTERNATIONAL CONFERENCE ON INFORMATION SYSTEMS AND COMPUTING TECHNOLOGY, 2016, 64 :159-163
[30]   A SOFTWARE DEFINED SECURITY ARCHITECTURE FOR SDN-BASED 5G NETWORK [J].
Liang, Xiaodong ;
Qiu, Xiaofeng .
PROCEEDINGS OF 2016 5TH IEEE INTERNATIONAL CONFERENCE ON NETWORK INFRASTRUCTURE AND DIGITAL CONTENT (IEEE IC-NIDC 2016), 2016, :17-21