SECURING CENTRALIZED SDN CONTROL WITH DISTRIBUTED BLOCKCHAIN TECHNOLOGY

被引:1
|
作者
Ahmad, Suhail [1 ]
Mir, Ajaz Hussain [2 ]
机构
[1] Univ Kashmir, Dept Comp Sci & Engn, Srinagar, Jammu & Kashmir, India
[2] Natl Inst Technol, Elect & Commun Dept, Srinagar, Jammu & Kashmir, India
来源
COMPUTER SCIENCE-AGH | 2023年 / 24卷 / 01期
关键词
SDN; SDN security; blockchain; southbound interface; TLS; threats in SDNs; SOFTWARE DEFINED NETWORKS;
D O I
10.7494/csci.2023.24.1.4605
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Software-Defined Networks (SDN) advocate the segregation of network control logic, forwarding functions and management applications into different planes to achieve network programmability and automated and dynamic flow control in next-generation networks. It promotes the deployment of novel and augmented network-management functions in order to have flexible, robust, scalable, and cost-effective network deployments. All of these features introduce new rese-arch challenges and require secure communication protocols among segregated network planes. This manuscript focuses on the security issue of the south-bound interface that operates between the SDN control and the data plane. We have highlighted the security threats that are associated with an unpro-tected southbound interface and those issues that are related to the existing TLS-based security solution. A lightweight blockchain-based decentralized se-curity solution is proposed for the southbound interface to secure the resources of logically centralized SDN controllers and distributed forwarding devices from opponents. The proposed mechanism can operate in multi-domain SDN deploy-ment and can be used with a wide range of network controllers and data plane devices. In addition to this, the proposed security solution has been analyzed in terms of its security features, communication, and re-authentication overhead.
引用
收藏
页码:5 / 30
页数:26
相关论文
共 50 条
  • [21] Distributed caching with centralized control
    Paul, S
    Fei, Z
    COMPUTER COMMUNICATIONS, 2001, 24 (02) : 256 - 268
  • [22] Centralized or distributed control configuration
    Lisowski, Leszek
    ADVANCES IN OPTICAL AND MECHANICAL TECHNOLOGIES FOR TELESCOPES AND INSTRUMENTATION III, 2018, 10706
  • [23] Hybrid SDN Performance: Switching between Centralized and Distributed Modes under Unreliable Control Communication Channels
    Osman, Mohammed
    Mangues-Bafalluy, Josep
    JOURNAL OF SENSOR AND ACTUATOR NETWORKS, 2021, 10 (03)
  • [24] Securing the Data Flow for Blockchain Technology in a Production Environment
    Korb, Tobias
    Oliver Riedel, David Michel
    Lechler, Armin
    IFAC PAPERSONLINE, 2019, 52 (10): : 125 - 130
  • [25] A Model for Securing Institutional Data Using Blockchain Technology
    Bhavani, D. Durga
    Chaithanya, D.
    DATA ENGINEERING AND COMMUNICATION TECHNOLOGY, ICDECT-2K19, 2020, 1079 : 873 - 879
  • [26] An approach for applying blockchain technology in centralized electricity markets
    Aybar-Mejíaa M.
    Rosario-Weeks D.
    Mariano-Hernández D.
    Domínguez-Garabitos M.
    Electricity Journal, 2021, 34 (03):
  • [27] Securing and authenticating healthcare records through blockchain technology
    Pandey, Prateek
    Litoriya, Ratnesh
    CRYPTOLOGIA, 2020, 44 (04) : 341 - 356
  • [28] Securing the Critical Communication in Dam Control System with SDN
    Liu, I-Hsien
    Huang, Min-Wei
    Lai, Hsin-Yu
    Lee, Meng-Huan
    Li, Jung-Shian
    JOURNAL OF ROBOTICS NETWORKING AND ARTIFICIAL LIFE, 2023, 10 (02): : 179 - 183
  • [29] Distributed IP Refactoring: Cooperation with Optical Transport Layer and Centralized SDN
    Kamamura, Shohei
    Fukuda, Aki
    Mori, Hiroki
    Hayashi, Rie
    Uematsu, Yoshihiko
    IEICE TRANSACTIONS ON COMMUNICATIONS, 2018, E101B (07) : 1661 - 1674
  • [30] Securing IoTs in distributed blockchain: Analysis, requirements and open issues
    Moin, Sana
    Karim, Ahmad
    Safdar, Zanab
    Safdar, Kalsoom
    Ahmed, Ejaz
    Imran, Muhammad
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2019, 100 : 325 - 343