Detection of Security and Safety Threats related to the Control of a SDN Architecture

被引:2
作者
Desgeorges, Loic [1 ]
Georges, Jean-Philippe [1 ]
Divoux, Thierry [1 ]
机构
[1] Univ Lorraine, CRAN, CNRS, F-54000 Nancy, France
关键词
Software-Defined Networking; Safety; Security; Multi-Controllers; Observability; MECHANISM;
D O I
10.1016/j.ifacol.2021.10.026
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Software Defined Networking is a concept within the networking field which proposed a centralized control considering the control and data planes. To overcome the safety and security threats, solutions might be divided into two categories: enforcing the controller to make it more robust or the architecture using a multi-controller approach. This work aims to pave the way for a multi-controller architecture without East-West interface to avoid the spreading of an attack. There is one nominal controller in charge of the control while the second observes the traffic at the Southbound interface to detect anomalies of control. A detection method is introduced theoretically and relies on Intrusion Detection System theory, more precisely the specification-based. Here, the specification is a template determined through a projection function of the control logic. The template is compared to the activity of the command observed such that any deviation generates an alarm. The method is finally explained in use cases. Copyright (C) 2021 The Authors.
引用
收藏
页码:153 / 158
页数:6
相关论文
共 19 条
[1]  
Abd Elazim NM, 2018, PROCEEDINGS OF 2018 13TH INTERNATIONAL CONFERENCE ON COMPUTER ENGINEERING AND SYSTEMS (ICCES), P555, DOI 10.1109/ICCES.2018.8639429
[2]  
[Anonymous], 2009, INFOCOM keynote talk
[3]  
Chao Qi, 2016, 2016 IEEE Conference on Computer Communications: Workshops (INFOCOM WKSHPS), P401, DOI 10.1109/INFCOMW.2016.7562109
[4]  
Fonseca P, 2012, IEEE IFIP NETW OPER, P933, DOI 10.1109/NOMS.2012.6212011
[5]   Combining Open Flow and sFlow for an effective and scalable anomaly detection and mitigation mechanism on SDN environments [J].
Giotis, K. ;
Argyropoulos, C. ;
Androulidakis, G. ;
Kalogeras, D. ;
Maglaris, V. .
COMPUTER NETWORKS, 2014, 62 :122-136
[6]   Multi-controller Based Software-Defined Net working : A Survey [J].
Hu, Tao ;
Guo, Zehua ;
Yi, Peng ;
Baker, Thar ;
Lan, Julong .
IEEE ACCESS, 2018, 6 :15980-15996
[7]   Software-Defined Networking: A Comprehensive Survey [J].
Kreutz, Diego ;
Ramos, Fernando M. V. ;
Verissimo, Paulo Esteves ;
Rothenberg, Christian Esteve ;
Azodolmolky, Siamak ;
Uhlig, Steve .
PROCEEDINGS OF THE IEEE, 2015, 103 (01) :14-76
[8]  
Lam JH, 2015, INT CONF UBIQ FUTUR, P921, DOI 10.1109/ICUFN.2015.7182680
[9]   A survey of network update in SDN [J].
Li, Dan ;
Wang, Songtao ;
Zhu, Konglin ;
Xia, Shutao .
FRONTIERS OF COMPUTER SCIENCE, 2017, 11 (01) :4-12
[10]   Intrusion detection system: A comprehensive review [J].
Liao, Hung-Jen ;
Lin, Chun-Hung Richard ;
Lin, Ying-Chih ;
Tung, Kuang-Yuan .
JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2013, 36 (01) :16-24