Mitigating DoS Attacks against SDN Controller Using Information Hiding

被引:2
|
作者
Abdullaziz, Osamah Ibrahiem [1 ]
Wang, Li-Chun [1 ]
机构
[1] Natl Chiao Tung Univ, Dept Elect & Comp Engn, Hsinchu, Taiwan
关键词
Software defined networking (SDN); OpenFlow; Denial of service (DoS) attacks; Information hiding;
D O I
10.1109/wcnc.2019.8885764
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
Because of SDN centralization nature, denial of service (DoS) attacks have become a prominent concern. In the OpenFlow (OF) protocol, the transport layer security (TLS) protocol is recommended to secure the control channel. Unfortunately, the tasks involved in the proper configuration of a secured TLS are very challenging. Even worse, TLS is made an optional mode of communication in OF. As a consequence, some OF-enabled switches and controllers do not adopt TLS. In this paper, we develop a lightweight authentication mechanism, called Hidden Authentication (HiAuth), to protect SDN controller against DoS attacks. HiAuth legitimizes SDN forwarding devices by hiding authentication information into the header of control channel packets. Our experimental results prove that HiAuth is lightweight and can not only mitigate DoS attacks, but also provide high undetectability to the attacker.
引用
收藏
页数:6
相关论文
共 50 条
  • [21] Mitigating Attacks in Software Defined Network(SDN)
    Karmakar, Kallol Krishna
    Varadharajan, Vijay
    Tupakula, Udaya
    [J]. 2017 FOURTH INTERNATIONAL CONFERENCE ON SOFTWARE DEFINED SYSTEMS (SDS), 2017, : 112 - 117
  • [22] Mitigating while Accessing: A Lightweight Defense Framework Against Link Flooding Attacks in SDN
    Sun Hancun
    Chen Xu
    Luo Yantian
    Ge Ning
    [J]. China Communications., 2024, 21 (11) - 27
  • [23] Mitigating HTTP GET FLOOD DDoS attack using an SDN controller
    Sanjeetha, R.
    Shastry, K. N. Ajay
    Chetan, H. R.
    Kanavalli, Anita
    [J]. 2020 5TH IEEE INTERNATIONAL CONFERENCE ON RECENT TRENDS ON ELECTRONICS, INFORMATION, COMMUNICATION & TECHNOLOGY (RTEICT-2020), 2020, : 6 - 10
  • [24] DHCP DoS and starvation attacks on SDN controllers and their mitigation
    Ishtiaq, Hafiz Usama
    Bhutta, Areeb Ahmed
    Mian, Adnan Noor
    [J]. JOURNAL OF COMPUTER VIROLOGY AND HACKING TECHNIQUES, 2024, 20 (01) : 15 - 25
  • [25] DeMi: A Solution to Detect and Mitigate DoS Attacks in SDN
    Eliyan, Lubna Fayez
    Di Pietro, Roberto
    [J]. IEEE ACCESS, 2023, 11 : 82477 - 82495
  • [26] DHCP DoS and starvation attacks on SDN controllers and their mitigation
    Hafiz Usama Ishtiaq
    Areeb Ahmed Bhutta
    Adnan Noor Mian
    [J]. Journal of Computer Virology and Hacking Techniques, 2024, 20 : 15 - 25
  • [27] SECOD: SDN sEcure COntrol and Data Plane Algorithm for Detecting and Defending against DoS Attacks
    Wang, Song
    Chandrasekharan, Sathyanarayanan
    Gomez, Karina
    Kandeepan, Sithamparanathan
    Al-Hourani, Akram
    Asghar, Muhammad Rizwan
    Russello, Giovanni
    Zanna, Paul
    [J]. NOMS 2018 - 2018 IEEE/IFIP NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM, 2018,
  • [28] A Framework for Mitigating DDoS and DOS Attacks in IoT Environment Using Hybrid Approach
    Ghali, Abdulrahman Aminu
    Ahmad, Rohiza
    Alhussian, Hitham
    [J]. ELECTRONICS, 2021, 10 (11)
  • [29] Mitigating DoS Attacks Using Performance Model-Driven Adaptive Algorithms
    Barna, Cornel
    Shtern, Mark
    Smit, Michael
    Tzerpos, Vassilios
    Litoiu, Marin
    [J]. ACM TRANSACTIONS ON AUTONOMOUS AND ADAPTIVE SYSTEMS, 2014, 9 (01)
  • [30] A Robust Information Hiding Scheme Using Third Decomposition Layer of Wavelet Against Universal Attacks
    Elbasi, Ersin
    [J]. 2022 IEEE WORLD AI IOT CONGRESS (AIIOT), 2022, : 611 - 616