SECURING CENTRALIZED SDN CONTROL WITH DISTRIBUTED BLOCKCHAIN TECHNOLOGY

被引:1
|
作者
Ahmad, Suhail [1 ]
Mir, Ajaz Hussain [2 ]
机构
[1] Univ Kashmir, Dept Comp Sci & Engn, Srinagar, Jammu & Kashmir, India
[2] Natl Inst Technol, Elect & Commun Dept, Srinagar, Jammu & Kashmir, India
来源
COMPUTER SCIENCE-AGH | 2023年 / 24卷 / 01期
关键词
SDN; SDN security; blockchain; southbound interface; TLS; threats in SDNs; SOFTWARE DEFINED NETWORKS;
D O I
10.7494/csci.2023.24.1.4605
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Software-Defined Networks (SDN) advocate the segregation of network control logic, forwarding functions and management applications into different planes to achieve network programmability and automated and dynamic flow control in next-generation networks. It promotes the deployment of novel and augmented network-management functions in order to have flexible, robust, scalable, and cost-effective network deployments. All of these features introduce new rese-arch challenges and require secure communication protocols among segregated network planes. This manuscript focuses on the security issue of the south-bound interface that operates between the SDN control and the data plane. We have highlighted the security threats that are associated with an unpro-tected southbound interface and those issues that are related to the existing TLS-based security solution. A lightweight blockchain-based decentralized se-curity solution is proposed for the southbound interface to secure the resources of logically centralized SDN controllers and distributed forwarding devices from opponents. The proposed mechanism can operate in multi-domain SDN deploy-ment and can be used with a wide range of network controllers and data plane devices. In addition to this, the proposed security solution has been analyzed in terms of its security features, communication, and re-authentication overhead.
引用
收藏
页码:5 / 30
页数:26
相关论文
共 50 条
  • [41] Distributed ledger technology, blockchain minitrack
    Welpe, Isabell
    Zavolokina, Liudmila
    Krcmar, Helmut
    Mehrwald, Pascal
    PROCEEDINGS OF THE 52ND ANNUAL HAWAII INTERNATIONAL CONFERENCE ON SYSTEM SCIENCES, 2019, : 4533 - 4534
  • [42] Securing Smart City Health Services Using Blockchain Technology
    Belludi, Suraj
    Kopackova, Hana
    2024 ZOOMING INNOVATION IN CONSUMER TECHNOLOGIES CONFERENCE, ZINC 2024, 2024, : 188 - 193
  • [43] Distributed ledger technology, blockchain minitrack
    Welpe, Isabell
    Zavolokina, Liudmila
    Krcmar, Helmut
    Mehrwald, Pascal
    Proceedings of the Annual Hawaii International Conference on System Sciences, 2019, 2019-January : 4533 - 4534
  • [44] Exploiting locality in distributed SDN control
    Schmid, Stefan
    Suomela, Jukka
    HotSDN 2013 - Proceedings of the 2013 ACM SIGCOMM Workshop on Hot Topics in Software Defined Networking, 2013, : 121 - 126
  • [45] Path Associativity Centralized Explicit Congestion Control (PACEC) for SDN
    Hertiana, Sofia Naning
    Kurniawan, Adit
    Hendrawan
    Pasaribu, Udjianna Sekteria
    2017 INTERNATIONAL CONFERENCE ON CONTROL, ELECTRONICS, RENEWABLE ENERGY AND COMMUNICATIONS (ICCREC), 2017, : 18 - 23
  • [46] Securing Trading Card Game Assets Using Blockchain Technology
    Rak, Maciej
    Niemiec, Marcin
    APPLIED SCIENCES-BASEL, 2024, 14 (23):
  • [47] Optimal Control for Distributed Wireless SDN
    Nguyen, Quang Minh
    Modiano, Eytan H.
    2024 23RD IFIP NETWORKING CONFERENCE, IFIP NETWORKING 2024, 2024, : 502 - 508
  • [48] Distributed Access Control with Blockchain
    Paillisse, Jordi
    Subira, Jordi
    Lopez, Albert
    Rodriguez-Natal, Alberto
    Ermagan, Vina
    Maino, Fabio
    Cabellos, Albert
    ICC 2019 - 2019 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS (ICC), 2019,
  • [49] Centralized and Distributed Intrusion Detection for Resource-Constrained Wireless SDN Networks
    Segura, Gustavo A. Nunez
    Chorti, Arsenia
    Margi, Cintia Borges
    IEEE INTERNET OF THINGS JOURNAL, 2022, 9 (10) : 7746 - 7758
  • [50] Blockchain-Enabled SDN for Securing Fog-Based Resource-Constrained IoT
    Misra, Sudip
    Deb, Pallav Kumar
    Pathak, Nidhi
    Mukherjee, Anandarup
    IEEE INFOCOM 2020 - IEEE CONFERENCE ON COMPUTER COMMUNICATIONS WORKSHOPS (INFOCOM WKSHPS), 2020, : 490 - 495