A Testbed for the Evaluation of Denial of Service Attacks in Software-Defined Networks

被引:2
|
作者
Wright, Andrea P. [1 ]
Ghani, Nasir [1 ]
机构
[1] Univ S Florida, Dept Elect Engn, Tampa, FL 33620 USA
来源
关键词
DoS attacks; GENI; DoS detection; Software-defined Networking; Software-defined Networking security;
D O I
10.1109/southeastcon42311.2019.9020433
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Software defined networking (SDN) is being widely deployed within enterprise and carrier networks to streamline network services provisioning and reduce costs. This approach improves upon traditional networking protocol technologies by decoupling the data and control planes and moving all control provisioning decisions to a centralized SDN controller. Overall, centralized control delivers much more cost-effective and flexible networking setups that can support a wide range of customized user-driven network management applications, e.g., traffic engineering, security, survivability, policy control, etc. However, the separation of the data and control layers in a SDN network introduces many attack points for malicious users to exploit. In particular, large-scale denial of service (DoS) attacks are a major concern here, as they can effectively shut down vital communications between the SDN controller and data plane nodes. Given the increasing sophistication of such attacks, SDN DoS detection and mitigation have become vital concerns. Although various studies have addressed this problem area, there is a further need to develop and test solutions in live realistic network settings. Along these lines, this paper overviews this important area and demonstrates the impact of DoS attacks on SDN elements in the NSF GENI network testbed. This work provides a key baseline and set of input data from which to develop further detection and mitigation strategies.
引用
收藏
页数:6
相关论文
共 50 条
  • [21] Collaborative Detection and Mitigation of Distributed Denial-of-Service Attacks on Software-Defined Network
    Omer Elsier Tayfour
    Muhammad Nadzir Marsono
    [J]. Mobile Networks and Applications, 2020, 25 : 1338 - 1347
  • [22] Collaborative Detection and Mitigation of Distributed Denial-of-Service Attacks on Software-Defined Network
    Tayfour, Omer Elsier
    Marsono, Muhammad Nadzir
    [J]. MOBILE NETWORKS & APPLICATIONS, 2020, 25 (04): : 1338 - 1347
  • [23] Toward secure software-defined networks against distributed denial of service attack
    Kshira Sagar Sahoo
    Sanjaya Kumar Panda
    Sampa Sahoo
    Bibhudatta Sahoo
    Ratnakar Dash
    [J]. The Journal of Supercomputing, 2019, 75 : 4829 - 4874
  • [24] Toward secure software-defined networks against distributed denial of service attack
    Sahoo, Kshira Sagar
    Panda, Sanjaya Kumar
    Sahoo, Sampa
    Sahoo, Bibhudatta
    Dash, Ratnakar
    [J]. JOURNAL OF SUPERCOMPUTING, 2019, 75 (08): : 4829 - 4874
  • [25] Toward an optimal solution against Denial of Service attacks in Software Defined Networks
    Imran, Muhammad
    Durad, Muhammad Hanif
    Khan, Farrukh Aslam
    Derhab, Abdelouahid
    [J]. FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2019, 92 : 444 - 453
  • [26] Detection Techniques of Distributed Denial of Service Attacks on Software-Defined Networking Controller-A Review
    Aladaileh, Mohammad A.
    Anbar, Mohammed
    Hasbullah, Iznan H.
    Chong, Yung-Wey
    Sanjalawe, Yousef K.
    [J]. IEEE ACCESS, 2020, 8 : 143985 - 143995
  • [27] Distributed Software-Defined Network Architecture for Smart Grid Resilience to Denial-of-Service Attacks
    Agnew, Dennis
    Boamahl, Sharon
    Mathieu, Reynold
    Cooper, Austin
    McNair, Janise
    Bretas, Arturo
    [J]. 2023 IEEE POWER & ENERGY SOCIETY GENERAL MEETING, PESGM, 2023,
  • [28] Hybrid Testbed for Security Research in Software-Defined Networks
    Windisch, Fritz
    Abedi, Kamyar
    Doan, Tung
    Strufe, Thorsten
    Nguyen, Giang T.
    [J]. 2023 IEEE CONFERENCE ON NETWORK FUNCTION VIRTUALIZATION AND SOFTWARE DEFINED NETWORKS, NFV-SDN, 2023, : 147 - 152
  • [29] Detecting Saturation Attacks in Software-Defined Networks
    Li, Zhiyuan
    Xing, Weijia
    Xu, Dianxiang
    [J]. 2018 IEEE INTERNATIONAL CONFERENCE ON INTELLIGENCE AND SECURITY INFORMATICS (ISI), 2018, : 163 - 168
  • [30] An Anonymization Service for Software-Defined Networks
    Bomfim, Leonardo H. S.
    Salgueiro, Edilayne M.
    Salgueiro, Ricardo J. P. de B.
    [J]. 2018 XLIV LATIN AMERICAN COMPUTER CONFERENCE (CLEI 2018), 2018, : 698 - 707