A Framework of Blockchain-Based Collaborative Intrusion Detection in Software Defined Networking

被引:9
|
作者
Li, Wenjuan [1 ,2 ]
Tan, Jiao [3 ]
Wang, Yu [1 ]
机构
[1] Guangzhou Univ, Inst Artificial Intelligence & Blockchain, Guangzhou, Peoples R China
[2] Tech Univ Denmark, Dept Appl Math & Comp Sci, Lyngby, Denmark
[3] KOTO Res Ctr, Macau, Peoples R China
来源
基金
中国国家自然科学基金;
关键词
Collaborative intrusion detection; Blockchain technology; Software defined networking; Insider attack; Trust management; SECURITY CHALLENGES;
D O I
10.1007/978-3-030-65745-1_15
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
To protect network assets from various cyber intrusions and fit the distributed environments like Internet of Things (IoTs), collaborative intrusion detection systems (CIDSs) are widely implemented allowing each detection node to exchange required data and information. This aims to improve the detection performance against some complicated attacks. In recent years, software defined networking (SDN) is developing rapidly, which can simplify the network complexity by separating the controller plane from the forwarding plane. In this way, the controller can manage the whole network without knowing the underlying structure and devices. To identify underlying malicious nodes or devices, CIDSs are still an important solution to secure SDN, but might be vulnerable to insider threats, in which an attacker can behave maliciously insider the network. In this work, we focus on this issue and advocate the merit on combining trust management and blockchain technology. Trust management can help evaluate the trustworthiness of each node, and blockchain technology can allow communication without a trusted party while ensuring the integrity of shared data. We then introduce a general framework of blockchain-based collaborative intrusion detection in SDN. In the study, we take challenge-based CIDS as a case, and evaluate our framework performance under both external and internal attacks. Our results indicate the viability and effectiveness of our framework.
引用
收藏
页码:261 / 276
页数:16
相关论文
共 50 条
  • [1] BlockCSDN: Towards Blockchain-Based Collaborative Intrusion Detection in Software Defined Networking
    Li, Wenjuan
    Wang, Yu
    Meng, Weizhi
    Li, Jin
    Su, Chunhua
    [J]. IEICE TRANSACTIONS ON INFORMATION AND SYSTEMS, 2022, E105D (02) : 272 - 279
  • [2] A Blockchain-Based Collaborative Intrusion Detection Systems Framework
    Alharbi, Shatha
    Alghazzawi, Daniyal
    Hakeem, Abeer
    Mohaisen, Linda
    Cheng, Li
    Attiah, Afraa
    [J]. IEEE INTERNET OF THINGS JOURNAL, 2024, 11 (15): : 25481 - 25493
  • [3] Blockchain-based collaborative intrusion detection scheme
    Dang, Tianran
    Tian, Guohua
    Wei, Jianghong
    Liu, Shuqin
    [J]. INTERNATIONAL JOURNAL OF COMPUTATIONAL SCIENCE AND ENGINEERING, 2023, 26 (04) : 418 - 429
  • [4] Toward a blockchain-based framework for challenge-based collaborative intrusion detection
    Li, Wenjuan
    Wang, Yu
    Li, Jin
    Au, Man Ho
    [J]. INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2021, 20 (02) : 127 - 139
  • [5] Toward a blockchain-based framework for challenge-based collaborative intrusion detection
    Wenjuan Li
    Yu Wang
    Jin Li
    Man Ho Au
    [J]. International Journal of Information Security, 2021, 20 : 127 - 139
  • [6] BCNBI: A Blockchain-Based Security Framework for Northbound Interface in Software-Defined Networking
    Algarni, Sultan
    Eassa, Fathy
    Almarhabi, Khalid
    Algarni, Abdullah
    Albeshri, Aiiad
    [J]. ELECTRONICS, 2022, 11 (07)
  • [7] A Blockchain-Based Retribution Mechanism for Collaborative Intrusion Detection
    Fan, Wenjun
    Kumar, Shubham
    Chang, Sang-Yoon
    Park, Younghee
    [J]. SILICON VALLEY CYBERSECURITY CONFERENCE, SVCC 2022, 2022, 1683 : 57 - 73
  • [8] Towards Blockchain-Based Collaborative Intrusion Detection Systems
    Alexopoulos, Nikolaos
    Vasilomanolakis, Emmanouil
    Ivanko, Natalia Reka
    Muehlhaeuser, Max
    [J]. CRITICAL INFORMATION INFRASTRUCTURES SECURITY (CRITIS 2017), 2018, 10707 : 107 - 118
  • [9] Challenge-based collaborative intrusion detection in software-defined networking: an evaluation
    Li, Wenjuan
    Wang, Yu
    Jin, Zhiping
    Yu, Keping
    Li, Jin
    Xiang, Yang
    [J]. DIGITAL COMMUNICATIONS AND NETWORKS, 2021, 7 (02) : 257 - 263
  • [10] HBFL: A hierarchical blockchain-based federated learning framework for collaborative IoT intrusion detection
    Sarhan, Mohanad
    Lo, Wai Weng
    Layeghy, Siamak
    Portmann, Marius
    [J]. COMPUTERS & ELECTRICAL ENGINEERING, 2022, 103