Audit-based correction mechanism for malicious statistics information of data plane

被引:0
|
作者
Liang, Dong [1 ,2 ]
Liu, Qinrang [1 ,2 ,3 ]
Song, Ke [1 ,2 ]
Yan, Binghao [1 ]
Hu, Tao [1 ]
机构
[1] Informat Engn Univ, Zhengzhou, Peoples R China
[2] Natl Digital Switching Syst Engn & Technol Res Ctr, Zhengzhou, Peoples R China
[3] Informat Engn Univ, 7 Jianxue St,Wenhua Rd, Zhengzhou, Henan, Peoples R China
关键词
fault tolerance; malicious switch; reliability; SDN; SWITCH TOLERANCE; LOAD BALANCE; SOFTWARE; ROBUSTNESS;
D O I
10.1002/nem.2219
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In software-defined networking (SDN), the controller relies on the information collected from the data plane for route planning, load balancing, and other functions. Statistics information is the most important kind of information among them, so the correctness of statistics information is the key to the proper operation of the network. Most of the current research on data plane focuses on policy consistency, rule redundancy, forwarding anomalies, and so on, and little attention is paid to whether the statistics information uploaded by the switches to the controller is correct. However, incorrect statistics information inevitably leads the controller to make wrong decisions. Therefore, this paper proposes an audit-based malicious information correction mechanism to address the problem of wrong statistics information uploaded by the switches. This mechanism audits the statistics information and locates malicious switches before uploading the statistics information to the controller. It identifies and corrects the statistics information errors by combining flow path and statistics information. We have performed simulations on Nsfnet, Abilene, and Fat-Tree, and the results show that our method can correct about 70% of the statistical information errors with less computational cost. To the best of our knowledge, this paper is the first malicious statistics information correction scheme for wildcard rules.
引用
收藏
页数:29
相关论文
共 50 条
  • [21] Intelligent Distribution Network Information Processing Based on Power Data Virtual Plane
    Wang, Zhidong
    Ni, Yingdong
    Zhang, Zifan
    Wang, Gan
    Chen, Zhifeng
    Deng, Fengqiang
    Pu, Zhengbin
    Yang, Ling
    Zhang, Yongjun
    Feng, Ruijue
    Guo, Lin
    APPLIED SCIENCES-BASEL, 2020, 10 (03):
  • [22] RETRACTED: Blockchain-Based Data Audit Mechanism for Integrity over Big Data Environments (Retracted Article)
    Wu, Jianbin
    Haider, Sami Ahmed
    Bhardwaj, Manish
    Sharma, Aditi
    Singhal, Piyush
    SECURITY AND COMMUNICATION NETWORKS, 2022, 2022
  • [23] The IT Audit Objective Research Based on the Information System Success Model under the Big Data Environment
    Li, Tingliao
    Chen, Lianghua
    PROCEEDINGS OF THE 5TH INTERNATIONAL SYMPOSIUM ON KNOWLEDGE ACQUISITION AND MODELING, 2015, 80 : 147 - 150
  • [24] Application and Design of Data Communication Mechanism of Information Systems Based on MQ
    Deng Yao-hua
    Wu Li-ming
    Lu Qi-wen
    2010 2ND INTERNATIONAL CONFERENCE ON COMPUTER AND AUTOMATION ENGINEERING (ICCAE 2010), VOL 2, 2010, : 451 - 454
  • [25] MultiSec: A Multi-Protocol Security Forwarding Mechanism Based on Programmable Data Plane
    Liu, Zeying
    Cui, Pengshuai
    Dong, Yongji
    Xue, Lei
    Hu, Yuxiang
    ELECTRONICS, 2022, 11 (15)
  • [26] Period-based defense mechanism against malicious data packet flooding attacks in wireless ad hoc networks
    Kim, Hyojin
    Song, JooSeok
    2010 DIGEST OF TECHNICAL PAPERS INTERNATIONAL CONFERENCE ON CONSUMER ELECTRONICS ICCE, 2010,
  • [27] From TIGER to audit instruments - Measuring neighborhood walkability with street data based on geographic information systems
    Schlossberg, Marc
    PEDESTRIANS AND BICYCLES, 2006, (1982): : 48 - 56
  • [28] A Novel Data Sharing Mechanism via Cloud-Based Dynamic Audit for Social Internet of Vehicles
    Ruan, Zhiqiang
    Liang, Wei
    Luo, Haibo
    Yan, Hui
    INTERNET OF VEHICLES - SAFE AND INTELLIGENT MOBILITY, IOV 2015, 2015, 9502 : 78 - 88
  • [29] Statistical relationship-based data quality checking mechanism of information system
    Hu, JQ
    Hu, HP
    Lu, ZD
    PROCEEDINGS OF '97 INTERNATIONAL CONFERENCE ON MANAGEMENT SCIENCE & ENGINEERING, 1997, : 105 - 110
  • [30] A Software-Defined Networking Packet Forwarding Verification Mechanism Based on Programmable Data Plane
    Zuo Zhibin
    Chang Chaowen
    Zhu Xianwei
    JOURNAL OF ELECTRONICS & INFORMATION TECHNOLOGY, 2020, 42 (05) : 1110 - 1117