SECURING CENTRALIZED SDN CONTROL WITH DISTRIBUTED BLOCKCHAIN TECHNOLOGY

被引:1
|
作者
Ahmad, Suhail [1 ]
Mir, Ajaz Hussain [2 ]
机构
[1] Univ Kashmir, Dept Comp Sci & Engn, Srinagar, Jammu & Kashmir, India
[2] Natl Inst Technol, Elect & Commun Dept, Srinagar, Jammu & Kashmir, India
来源
COMPUTER SCIENCE-AGH | 2023年 / 24卷 / 01期
关键词
SDN; SDN security; blockchain; southbound interface; TLS; threats in SDNs; SOFTWARE DEFINED NETWORKS;
D O I
10.7494/csci.2023.24.1.4605
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Software-Defined Networks (SDN) advocate the segregation of network control logic, forwarding functions and management applications into different planes to achieve network programmability and automated and dynamic flow control in next-generation networks. It promotes the deployment of novel and augmented network-management functions in order to have flexible, robust, scalable, and cost-effective network deployments. All of these features introduce new rese-arch challenges and require secure communication protocols among segregated network planes. This manuscript focuses on the security issue of the south-bound interface that operates between the SDN control and the data plane. We have highlighted the security threats that are associated with an unpro-tected southbound interface and those issues that are related to the existing TLS-based security solution. A lightweight blockchain-based decentralized se-curity solution is proposed for the southbound interface to secure the resources of logically centralized SDN controllers and distributed forwarding devices from opponents. The proposed mechanism can operate in multi-domain SDN deploy-ment and can be used with a wide range of network controllers and data plane devices. In addition to this, the proposed security solution has been analyzed in terms of its security features, communication, and re-authentication overhead.
引用
收藏
页码:5 / 30
页数:26
相关论文
共 50 条
  • [1] Securing Distributed SDN with IBC
    Lam, Jun-Huy
    Lee, Sang-Gon
    Lee, Hoon-Jae
    Oktian, Yustus Eko
    2015 SEVENTH INTERNATIONAL CONFERENCE ON UBIQUITOUS AND FUTURE NETWORKS, 2015, : 921 - 925
  • [2] The SDN Control Plane Challenge for Minimum Control traffic: Distributed or Centralized?
    Choumas, Kostas
    Giatsios, Dimitris
    Flegkas, Paris
    Korakis, Thanasis
    2019 16TH IEEE ANNUAL CONSUMER COMMUNICATIONS & NETWORKING CONFERENCE (CCNC), 2019,
  • [3] SDN Partitioning: A Centralized Control Plane for Distributed Routing Protocols
    Caria, Marcel
    Jukan, Admela
    Hoffmann, Marco
    IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2016, 13 (03): : 381 - 393
  • [4] Blockchain-based Secure Coordination for Distributed SDN Control Plane
    Fan, Wenjun
    Chang, Sang-Yoon
    Kumar, Shubham
    Zhou, Xiaobo
    Park, Younghee
    PROCEEDINGS OF THE 2021 IEEE 7TH INTERNATIONAL CONFERENCE ON NETWORK SOFTWARIZATION (NETSOFT 2021): ACCELERATING NETWORK SOFTWARIZATION IN THE COGNITIVE AGE, 2021, : 253 - 257
  • [5] A Distributed Security SDN Cluster Architecture for Smart Grid Based on Blockchain Technology
    Xiong, Ao
    Tian, Hongkang
    He, Wenchen
    Zhang, Jie
    Meng, Huiping
    Guo, Shaoyong
    Wang, Xinyan
    Wu, Xinyi
    Kadoch, Michel
    Security and Communication Networks, 2021, 2021
  • [6] A Review of Distributed Access Control for Blockchain Systems Towards Securing the Internet of Things
    Butun, Ismail
    Osterberg, Patrik
    IEEE ACCESS, 2021, 9 : 5428 - 5441
  • [7] Securing Distributed SDN Controllers Against DoS Attacks
    Etaiwi, Wael
    Biltawi, Mariam
    Almajali, Sufyan
    2017 INTERNATIONAL CONFERENCE ON NEW TRENDS IN COMPUTING SCIENCES (ICTCS), 2017, : 203 - 206
  • [8] B-DAC: A decentralized access control framework on Northbound interface for securing SDN using blockchain
    Phan The Duy
    Hien Do Hoang
    Do Thi Thu Hien
    Anh Gia-Tuan Nguyen
    Van-Hau Pham
    JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2022, 64
  • [9] Securing SDN-Controlled IoT Networks Through Edge Blockchain
    Hu, Jiejun
    Reed, Martin
    Thomos, Nikolaos
    AI-Naday, Mays F.
    Yang, Kun
    IEEE INTERNET OF THINGS JOURNAL, 2021, 8 (04) : 2102 - 2115
  • [10] CENTRALIZED DISTRIBUTED CONTROL
    KOMPASS, EJ
    CONTROL ENGINEERING, 1989, 36 (11) : 173 - 173