Distributed controllers multi-granularity security communication mechanism for software-defined networking

被引:6
|
作者
Shang, Fengjun [1 ]
Li, Yan [1 ]
Fu, Qiang [1 ]
Wang, Wenkai [1 ]
Feng, Jiangfan [1 ]
He, Li [1 ]
机构
[1] Chongqing Univ Posts & Telecommun, Coll Comp Sci & Technol, Chongqing 400065, Peoples R China
基金
中国国家自然科学基金;
关键词
Software defined network; Security architecture; Secure communication; SDN;
D O I
10.1016/j.compeleceng.2017.07.003
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
For the multi-domain software defined network (SDN), different controllers are not able to directly communicate with each other due to the different distances among control planes. Therefore, the exchange of information among different domains is generally unsecure. The main contribution of this paper can be summarized into two parts. Firstly, architecture of multi-granularity security controller is proposed, which includes a basic control module and a multi-granularity security customized module. Secondly, a secure communication mechanism is proposed for distributed controller, where a prototype of this mechanism is implemented. In particular, this mechanism can make use of the border switch as inter domain agents, where special packets are used by the controller to send messages to the secure tunnel. A two-step authentication of the controller can be provided by inter-domain agents and digital certificates. The experimental results demonstrate that the distributed controller secure communication mechanism is capable of effectively improving the security of SDN domain. (C) 2017 Elsevier Ltd. All rights reserved.
引用
收藏
页码:388 / 406
页数:19
相关论文
共 50 条
  • [1] A Dynamic Load Balancing Mechanism for Distributed Controllers in Software-Defined Networking
    Lan, Wenjing
    Li, Fangmin
    Liu, Xinhua
    Qiu, Yiwen
    2018 10TH INTERNATIONAL CONFERENCE ON MEASURING TECHNOLOGY AND MECHATRONICS AUTOMATION (ICMTMA), 2018, : 259 - 262
  • [2] Survey on security aspects of distributed software-defined networking controllers in an enterprise SD-WLAN
    Neena Susan Shaji
    Raja Muthalagu
    Digital Communications and Networks, 2024, 10 (06) : 1716 - 1731
  • [3] A Novel Features Prioritization Mechanism for Controllers in Software-Defined Networking
    Ali, Jehad
    Lee, Byungkyu
    Oh, Jimyung
    Lee, Jungtae
    Roh, Byeong-hee
    CMC-COMPUTERS MATERIALS & CONTINUA, 2021, 69 (01): : 267 - 282
  • [4] Load-Balancing Multiple Controllers Mechanism for Software-Defined Networking
    Yi-Wei Ma
    Jiann-Liang Chen
    Yao-Hong Tsai
    Kui-He Cheng
    Wen-Chien Hung
    Wireless Personal Communications, 2017, 94 : 3549 - 3574
  • [5] On Software-defined networking and the design of SDN Controllers
    Hoang, Doan B.
    Minh Pham
    2015 6TH INTERNATIONAL CONFERENCE ON THE NETWORK OF THE FUTURE (NOF), 2015,
  • [6] Load-Balancing Multiple Controllers Mechanism for Software-Defined Networking
    Ma, Yi-Wei
    Chen, Jiann-Liang
    Tsai, Yao-Hong
    Cheng, Kui-He
    Hung, Wen-Chien
    WIRELESS PERSONAL COMMUNICATIONS, 2017, 94 (04) : 3549 - 3574
  • [7] Standardization for Evaluating Software-Defined Networking Controllers
    da Silva, Emerson Remigio
    Endo, Patricia Takako
    Albuquerque, Edison de Queiroz
    PROCEEDINGS OF THE 2017 8TH INTERNATIONAL CONFERENCE ON THE NETWORK OF THE FUTURE (NOF), 2017, : 135 - 137
  • [8] Open Source Software-Defined Networking Controllers-Operational and Security Issues
    Mardaus, Aleksandra
    Biernacka, Edyta
    Wojcik, Robert
    Domzal, Jerzy
    ELECTRONICS, 2024, 13 (12)
  • [9] Analysis of Real-Time Coordination of Distributed Power Flow Controllers Using Software-Defined Networking Communication
    Dalhues, Stefan
    Robitzky, Lena
    Haeger, Ulf
    Dorsch, Nils
    Kurtz, Fabian
    Wietfeld, Christian
    2018 IEEE POWER & ENERGY SOCIETY INNOVATIVE SMART GRID TECHNOLOGIES CONFERENCE (ISGT), 2018,
  • [10] Reducing Inconsistency between Software-Defined Networking Controllers
    Tsukuda, Yusaku
    Kosugi, Masaru
    Shiomoto, Kohei
    Morita, Tatsuya
    Hayashi, Tsunemasa
    PROCEEDINGS OF THE 2019 IEEE CONFERENCE ON NETWORK SOFTWARIZATION (NETSOFT 2019), 2019, : 301 - 305