Mitigating DoS Attacks against SDN Controller Using Information Hiding

被引:2
|
作者
Abdullaziz, Osamah Ibrahiem [1 ]
Wang, Li-Chun [1 ]
机构
[1] Natl Chiao Tung Univ, Dept Elect & Comp Engn, Hsinchu, Taiwan
关键词
Software defined networking (SDN); OpenFlow; Denial of service (DoS) attacks; Information hiding;
D O I
10.1109/wcnc.2019.8885764
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
Because of SDN centralization nature, denial of service (DoS) attacks have become a prominent concern. In the OpenFlow (OF) protocol, the transport layer security (TLS) protocol is recommended to secure the control channel. Unfortunately, the tasks involved in the proper configuration of a secured TLS are very challenging. Even worse, TLS is made an optional mode of communication in OF. As a consequence, some OF-enabled switches and controllers do not adopt TLS. In this paper, we develop a lightweight authentication mechanism, called Hidden Authentication (HiAuth), to protect SDN controller against DoS attacks. HiAuth legitimizes SDN forwarding devices by hiding authentication information into the header of control channel packets. Our experimental results prove that HiAuth is lightweight and can not only mitigate DoS attacks, but also provide high undetectability to the attacker.
引用
收藏
页数:6
相关论文
共 50 条
  • [1] Mitigating DoS Attacks in SDN Using Offloading Path Strategies
    Huang, Tai-Siang
    Hsiung, Po-Yang
    Cheng, Bo-Chao
    [J]. JOURNAL OF INTERNET TECHNOLOGY, 2019, 20 (04): : 1281 - 1285
  • [2] A holistic approach to mitigating DoS attacks in SDN networks
    Dridi, Lobna
    Zhani, Mohamed Faten
    [J]. INTERNATIONAL JOURNAL OF NETWORK MANAGEMENT, 2018, 28 (01)
  • [3] A Scrutinized study on DoS attacks in Wireless Sensor Networks and need of SDN in Mitigating DoS attacks
    Sarkunavathi, A.
    Srinivasan, V
    [J]. 2021 INTERNATIONAL CONFERENCE ON COMPUTER COMMUNICATION AND INFORMATICS (ICCCI), 2021,
  • [4] DroPPPP: A P4 Approach to Mitigating DoS Attacks in SDN
    Simsek, Goksel
    Bostan, Hakan
    Sarica, Alper Kaan
    Sarikaya, Egemen
    Keles, Alperen
    Angin, Pelin
    Alemdar, Hande
    Onur, Ertan
    [J]. INFORMATION SECURITY APPLICATIONS, WISA 2019, 2020, 11897 : 55 - 66
  • [5] Securing Distributed SDN Controllers Against DoS Attacks
    Etaiwi, Wael
    Biltawi, Mariam
    Almajali, Sufyan
    [J]. 2017 INTERNATIONAL CONFERENCE ON NEW TRENDS IN COMPUTING SCIENCES (ICTCS), 2017, : 203 - 206
  • [6] Credibility-Based Countermeasure Against Slow HTTP DoS Attacks by Using SDN
    Wang, You-Chiun
    Ye, Ren-Xuan
    [J]. 2021 IEEE 11TH ANNUAL COMPUTING AND COMMUNICATION WORKSHOP AND CONFERENCE (CCWC), 2021, : 890 - 895
  • [7] Mitigating DNS DoS Attacks
    Ballani, Hitesh
    Francis, Paul
    [J]. CCS'08: PROCEEDINGS OF THE 15TH ACM CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, 2008, : 189 - 198
  • [9] Mitigating DoS attacks against broadcast authentication in wireless sensor networks
    Ning, Peng
    Liu, An
    Du, Wenliang
    [J]. ACM TRANSACTIONS ON SENSOR NETWORKS, 2008, 4 (01)
  • [10] A Resilient Data-Driven Controller Against DoS Attacks
    Liu, Wenjie
    Sun, Jian
    Wang, Gang
    Chen, Jie
    [J]. 2022 41ST CHINESE CONTROL CONFERENCE (CCC), 2022, : 4305 - 4310