SECURING CENTRALIZED SDN CONTROL WITH DISTRIBUTED BLOCKCHAIN TECHNOLOGY

被引:1
|
作者
Ahmad, Suhail [1 ]
Mir, Ajaz Hussain [2 ]
机构
[1] Univ Kashmir, Dept Comp Sci & Engn, Srinagar, Jammu & Kashmir, India
[2] Natl Inst Technol, Elect & Commun Dept, Srinagar, Jammu & Kashmir, India
来源
COMPUTER SCIENCE-AGH | 2023年 / 24卷 / 01期
关键词
SDN; SDN security; blockchain; southbound interface; TLS; threats in SDNs; SOFTWARE DEFINED NETWORKS;
D O I
10.7494/csci.2023.24.1.4605
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Software-Defined Networks (SDN) advocate the segregation of network control logic, forwarding functions and management applications into different planes to achieve network programmability and automated and dynamic flow control in next-generation networks. It promotes the deployment of novel and augmented network-management functions in order to have flexible, robust, scalable, and cost-effective network deployments. All of these features introduce new rese-arch challenges and require secure communication protocols among segregated network planes. This manuscript focuses on the security issue of the south-bound interface that operates between the SDN control and the data plane. We have highlighted the security threats that are associated with an unpro-tected southbound interface and those issues that are related to the existing TLS-based security solution. A lightweight blockchain-based decentralized se-curity solution is proposed for the southbound interface to secure the resources of logically centralized SDN controllers and distributed forwarding devices from opponents. The proposed mechanism can operate in multi-domain SDN deploy-ment and can be used with a wide range of network controllers and data plane devices. In addition to this, the proposed security solution has been analyzed in terms of its security features, communication, and re-authentication overhead.
引用
收藏
页码:5 / 30
页数:26
相关论文
共 50 条
  • [31] Accelerating and Securing Blockchain-Enabled Distributed Machine Learning
    Du, Yao
    Wang, Zehua
    Leung, Cyril
    Leung, Victor C. M.
    IEEE TRANSACTIONS ON MOBILE COMPUTING, 2024, 23 (06) : 6712 - 6730
  • [32] Distributed Watchdogs Based on Blockchain for Securing Industrial Internet of Things
    Lee, JongHyup
    Kwon, Taekyoung
    SENSORS, 2021, 21 (13)
  • [33] Securing Fingerprint Template Using Blockchain and Distributed Storage System
    Acquah, Moses Arhinful
    Chen, Na
    Pan, Jeng-Shyang
    Yang, Hong-Mei
    Yan, Bin
    SYMMETRY-BASEL, 2020, 12 (06):
  • [34] A centralized/distributed model for information technology resources
    Zazueta, FS
    Wilkening, AJ
    Beck, HW
    Halsey, LA
    Hintz, T
    COMPUTERS IN AGRICULTURE, 1998, 1998, : 292 - 299
  • [35] Distributed and centralized control during differentiation
    Chubb, Jonathan R.
    Ford, Hugh Z.
    Antolovic, Vlatka
    DEVELOPMENTAL CELL, 2021, 56 (15) : 2142 - 2144
  • [36] A Survey on Emerging Blockchain Technology Platforms for Securing the Internet of Things
    Kareem, Yunus
    Djenouri, Djamel
    Ghadafi, Essam
    FUTURE INTERNET, 2024, 16 (08)
  • [37] Securing Construction Workers' Data Security and Privacy with Blockchain Technology
    Saah, Alvina Ekua Ntefua
    Yee, Jurng-Jae
    Choi, Jae-Ho
    APPLIED SCIENCES-BASEL, 2023, 13 (24):
  • [38] Centralized vs. distributed control
    不详
    CONTROL ENGINEERING, 2005, 52 (07) : 14 - 15
  • [39] Distributed ledger technology, blockchain minitrack
    Welpe, Isabell
    Zavolokina, Liudmila
    Krcmar, Helmut
    Mehrwald, Pascal
    Proceedings of the Annual Hawaii International Conference on System Sciences, 2020, 2020-January : 4021 - 4022
  • [40] Controller DAC: Securing SDN Controller with Dynamic Access Control
    Tseng, Yuchia
    Pattaranantakul, Montida
    He, Ruan
    Zhang, Zonghua
    Nait-Ahdesselam, Farid
    2017 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS (ICC), 2017,