Implementation of a Click Based IDS on SDN-NFV Architecture and Performance Evaluation

被引:1
|
作者
Monir, Md. Fahad [1 ]
Uddin, Ryhan [2 ]
Pan, Dan [3 ]
机构
[1] Independent Univ Bangladesh, Dept Comp Sci & Engn, Dhaka, Bangladesh
[2] Grameen CyberNet Ltd, Network Operat Ctr, Dhaka, Bangladesh
[3] Telenor Sverige AB, Network & Dev Dept, Stockholm, Sweden
关键词
SDN; NFV; Click; IDS;
D O I
10.1109/BlackSeaCom52164.2021.9527751
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Network Virtualization is a revolutionary concept that offers programmability and scalability, while providing open networking framework allowing dynamic orchestration. It allows the inclusion of various external virtual elements such as intrusion detection system (IDS), Network Address and Port Translation (NAPT), Load Balancer, IP Router etc. Such elements can be designed and implemented as per designers' requirements, on different Network Function Virtualization (NFV) and Software-defined networking (SDN) platforms. In this work, we have designed a Click-IDS which is a Click modular router-based Intrusion Detection System and analyzed its performance. At first the evaluation was done for single Click-IDS, and later two Click-IDS were integrated for packet supervision between hosts and web servers connected through a round robin load balancer. A PDX controller was used for integrating NFV and SDN on Mininet virtual environment, and the performance was assessed for different bandwidth conditions. Our tests showed that the inclusion of these middleware (Click-IDS) incurred deterioration in packet delivery ratio and yielded higher transmission delay (jitter) between the hosts and the destination web servers.
引用
收藏
页码:49 / 54
页数:6
相关论文
共 50 条
  • [31] Performance evaluation of a CIDF_Based IDS system
    Fang, ZY
    Yuan, LL
    Jiao, X
    Song, XL
    Hong, Y
    Xuan, JQ
    Li, YH
    Li, X
    [J]. Proceedings of the Second IASTED International Multi-Conference on Automation, Control, and Information Technology - Communication Systems, 2005, : 29 - 32
  • [32] FLATLANd: A Novel SDN-Based Telecoms Network Architecture Enabling NFV and Metro-Access Convergence
    Slyne, Frank
    Ruffini, Marco
    [J]. 20TH INTERNATIONAL CONFERENCE ON OPTICAL NETWORK DESIGN AND MODELING (ONDM 2016), 2016,
  • [33] Design and Implementation of SDN-Based Secure Architecture for IoT-Lab
    Karaarslan, Enis
    Karabacak, Eren
    Cetinkaya, Cihat
    [J]. ARTIFICIAL INTELLIGENCE AND APPLIED MATHEMATICS IN ENGINEERING PROBLEMS, 2020, 43 : 877 - 885
  • [34] Implementation of OpenFlow based cognitive radio network architecture: SDN&R
    Suneth Namal
    Ijaz Ahmad
    Saad Saud
    Markku Jokinen
    Andrei Gurtov
    [J]. Wireless Networks, 2016, 22 : 663 - 677
  • [35] An implementation of a deeply programmable SDN switch based on a hybrid FPGA/CPU architecture
    Kaljic, Enio
    Maric, Almir
    Njemcevic, Pamela
    [J]. 2019 18TH INTERNATIONAL SYMPOSIUM INFOTEH-JAHORINA (INFOTEH), 2019,
  • [36] A Multi-Domain SDN Scalability Architecture implementation based on the Coordinate Controller
    Wang, Jianglong
    Shou, Guochu
    Hu, Yihong
    Guo, Zhigang
    [J]. 2016 INTERNATIONAL CONFERENCE ON CYBER-ENABLED DISTRIBUTED COMPUTING AND KNOWLEDGE DISCOVERY PROCEEDINGS - CYBERC 2016, 2016, : 494 - 499
  • [37] Implementation of OpenFlow based cognitive radio network architecture: SDN&R
    Namal, Suneth
    Ahmad, Ijaz
    Saud, Saad
    Jokinen, Markku
    Gurtov, Andrei
    [J]. WIRELESS NETWORKS, 2016, 22 (02) : 663 - 677
  • [38] SDN-Based Wireless Network Performance Evaluation
    Juhana, Tutun
    Ilma, Farchah Hidayatul
    [J]. PROCEEDING OF 2019 INTERNATIONAL CONFERENCE ON ELECTRICAL ENGINEERING AND INFORMATICS (ICEEI), 2019, : 428 - 433
  • [39] Design, Implementation and Evaluation of SDN-based Resource Management Model
    Celenlioglu, Mahmud Rasih
    Alsadi, Mohammed
    Mantar, Haci Ali
    [J]. 2015 7TH INTERNATIONAL CONFERENCE ON NEW TECHNOLOGIES, MOBILITY AND SECURITY (NTMS), 2015,
  • [40] Performance Evaluation of Mesh-based NoCs:Implementation of a New Architecture and Routing Algorithm
    Sudhanshu Choudhary
    Shafi Qureshi
    [J]. International Journal of Automation and Computing, 2012, (04) : 403 - 413