Design and Implementation of an SDN-Enabled DNS Security Framework

被引:0
|
作者
Zhenpeng Wang [1 ]
Hongchao Hu [1 ]
Guozhen Cheng [1 ]
机构
[1] National Digital Switching System Engineering and Technological Research Center
关键词
DNS cache poisoning attack; software defined networking; moving target defense; dynamic heterogeneous redundant;
D O I
暂无
中图分类号
TP393.08 [];
学科分类号
0839 ; 1402 ;
摘要
The Domain Name System(DNS) is suffering from the vulnerabilities exploited to launch the cache poisoning attack. Inspired by biodiversity, we design and implement a non-intrusive and tolerant secure architecture Multi-DNS(MDNS) to deal with it. MDNS consists of Scheduling Proxy and DNS server pool with heterogeneous DNSs in it. And the Scheduling Proxy dynamically schedules m DNSs to provide service in parallel and adopts the vote results from majority of DNSs to decide valid replies. And benefit from the centralized control of software defined networking(SDN), we implement a proof of concept for it. Evaluation results prove the validity and availability of MDNS and its intrusion/fault tolerance, while the average delay can be controlled in 0.3s.
引用
收藏
页码:233 / 245
页数:13
相关论文
共 50 条
  • [31] Blockchain Based IIoT Data Sharing Framework for SDN-Enabled Pervasive Edge Computing
    Gao, Ying
    Chen, Yijian
    Hu, Xiping
    Lin, Hongliang
    Liu, Yangliang
    Nie, Laisen
    [J]. IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2021, 17 (07) : 5041 - 5049
  • [32] SDN-Enabled Energy-Efficient Routing Optimization Framework for Industrial Internet of Things
    Naeem, Faisal
    Tariq, Muhammad
    Poor, H. Vincent
    [J]. IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2021, 17 (08) : 5660 - 5667
  • [33] A service-aware transport layer framework for SDN-enabled cellular core networks
    Xia, Nian
    Tsai, Pang-Wei
    Ling, Teck Chaw
    Yang, Chu-Sing
    [J]. IET COMMUNICATIONS, 2022, 16 (11) : 1279 - 1289
  • [34] Blockchain based secure IoT data sharing framework for SDN-enabled smart communities
    Gao, Ying
    Chen, Yijian
    Lin, Hongliang
    Rodrigues, Joel J. P. C.
    [J]. IEEE INFOCOM 2020 - IEEE CONFERENCE ON COMPUTER COMMUNICATIONS WORKSHOPS (INFOCOM WKSHPS), 2020, : 514 - 519
  • [35] Blockchain and Random Subspace Learning-Based IDS for SDN-Enabled Industrial IoT Security
    Derhab, Abdelouahid
    Guerroumi, Mohamed
    Gumaei, Abdu
    Maglaras, Leandros
    Ferrag, Mohamed Amine
    Mukherjee, Mithun
    Khan, Farrukh Aslam
    [J]. SENSORS, 2019, 19 (14)
  • [36] Security and Privacy Challenges in SDN-Enabled IoT Systems: Causes, Proposed Solutions, and Future Directions
    Rahdari, Ahmad
    Jalili, Ahmad
    Esnaashari, Mehdi
    Gheisari, Mehdi
    Vorobeva, Alisa A.
    Fang, Zhaoxi
    Sun, Panjun
    Korzhuk, Viktoriia M.
    Popov, Ilya
    Wu, Zongda
    Tahaei, Hamid
    [J]. CMC-COMPUTERS MATERIALS & CONTINUA, 2024, 80 (02): : 2511 - 2533
  • [37] SDN-enabled terahertz x-haul network
    Costa-Requena, Jose
    Konstantinos, Chartsias
    Dimitrios, Kritharidis
    Afriyie, Abraham
    Carapellese, Nicola
    Yusta Padilla, Eduardo
    [J]. 2021 28TH INTERNATIONAL CONFERENCE ON TELECOMMUNICATIONS (ICT), 2021, : 108 - 112
  • [38] Mobility management approaches for SDN-enabled mobile networks
    Manzoor A. Khan
    Xuan T. Dang
    Tobias Dörsch
    Sebastian Peters
    [J]. Annals of Telecommunications, 2018, 73 : 719 - 731
  • [39] Reinforcement Learning for Attack Mitigation in SDN-enabled Networks
    Zolotukhin, Mikhail
    Kumar, Sanjay
    Hamalainen, Timo
    [J]. PROCEEDINGS OF THE 2020 6TH IEEE CONFERENCE ON NETWORK SOFTWARIZATION (NETSOFT 2020): BRIDGING THE GAP BETWEEN AI AND NETWORK SOFTWARIZATION, 2020, : 282 - 286
  • [40] Virtual Links Mapping in Future SDN-enabled Networks
    Trivisonno, R.
    Vaishnavi, I.
    Guerzoni, R.
    Despotovic, Z.
    Hecker, A.
    Beker, S.
    Soldani, D.
    [J]. 2013 IEEE WORKSHOP ON SOFTWARE DEFINED NETWORKS FOR FUTURE NETWORKS AND SERVICES (SDN4FNS 2013), 2013,