Authenticated Quality of Service Aware Routing in Software Defined Networks

被引:1
作者
Aytac, Samet [1 ]
Ermi, Orhan [1 ]
Caglayan, Mehmet Ufuk [2 ]
Alagoz, Fatih [1 ]
机构
[1] Bogazici Univ Istanbul, Dept Comp Engn, TR-34342 Istanbul, Turkey
[2] Yasar Univ, Dept Comp Engn, TR-35100 Izmir, Turkey
来源
RISKS AND SECURITY OF INTERNET AND SYSTEMS | 2019年 / 11391卷
关键词
Software Defined Networking; QoS Aware Routing in SDN; Attribute Based Authentication; Public Key Encryption; Multi-constrained Shortest Path Problem;
D O I
10.1007/978-3-030-12143-3_10
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Quality of Service (QoS) aware routing is an ongoing and major problem for traditional networks since they are not able to manage network traffic for immense variety of users due to their inflexible and static architectures. Software Defined Networking (SDN) has emerged to remove these limitations by separating the control plane and the data plane to provide centralized control with the help of programmable controllers. Such improvements also make SDN more flexible than traditional networks in terms of achieving QoS-aware routing for large and medium sized networks. However, providing QoS-aware routing in SDN without using any security mechanism may become a challenging issue. For instance, malicious users in the network may escalate their privileges to monopolize resource utilization. The provision of an authentication mechanism that jointly works with QoS-aware routing is expected to solve the issue. In this paper, we propose an Authenticated QoS-Aware Routing (AQoSAR) for Software Defined Networks to determine routing paths of a single user and a group of users in an authenticated manner. AQoSAR consists of the authentication application and the routing application. In the authentication application, we employ Ciphertext Policy Attribute Based Encryption since it easily operates with huge variety of users by defining attributes such as QoS-aware routing metrics. In the routing application, we propose a routing approach based on a metric list rather than a single metric for determining the QoS level of users. To show the applicability of AQoSAR, the security analysis and the performance analysis are presented.
引用
收藏
页码:110 / 127
页数:18
相关论文
共 24 条
[1]  
Aghapour S, 2016, 2016 8TH INTERNATIONAL SYMPOSIUM ON TELECOMMUNICATIONS (IST), P78, DOI 10.1109/ISTEL.2016.7881787
[2]  
[Anonymous], 2006, C COMP COMM SEC ACM
[3]   Ciphertext-policy attribute-based encryption [J].
Bethencourt, John ;
Sahai, Amit ;
Waters, Brent .
2007 IEEE SYMPOSIUM ON SECURITY AND PRIVACY, PROCEEDINGS, 2007, :321-+
[4]  
Bin W., 2013, INT C EMERGING INTEL
[5]  
Dangovas Vainius, 2014, International Conference on Digital Information, Networking, and Wireless Communications (DINWC2014), P20
[6]   Ensuring end-to-end QoS based on multi-paths routing using SDN technology [J].
Dutra, Diego Leonel Cadette ;
Bagaa, Miloud ;
Taleb, Tarik ;
Samdanis, Konstantinos .
GLOBECOM 2017 - 2017 IEEE GLOBAL COMMUNICATIONS CONFERENCE, 2017,
[7]  
Egilmez H., 2014, T MULTIMEDIA
[8]  
Egilmez HE, 2012, ASIAPAC SIGN INFO PR
[9]   A PUBLIC KEY CRYPTOSYSTEM AND A SIGNATURE SCHEME BASED ON DISCRETE LOGARITHMS [J].
ELGAMAL, T .
IEEE TRANSACTIONS ON INFORMATION THEORY, 1985, 31 (04) :469-472
[10]   A Privacy-Preserving Attribute-Based Authentication System for Mobile Health Networks [J].
Guo, Linke ;
Zhang, Chi ;
Sun, Jinyuan ;
Fang, Yuguang .
IEEE TRANSACTIONS ON MOBILE COMPUTING, 2014, 13 (09) :1927-1941