Deployment of Intrusion Prevention System Based on Software Defined Networking

被引:0
|
作者
Zhang, Lei [1 ]
Shou, Guochu [1 ]
Hu, Yihong [1 ]
Guo, Zhigang [1 ]
机构
[1] Beijing Univ Posts & Telecommun, Beijing Lab Network Syst Architecture & Convergen, Sch Informat & Commun Engn, Beijing 100876, Peoples R China
关键词
SDN/OpenFlow; network security; Intrusion Prevention System(IPS); load balancing;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The development of the mobile Internet brought about by the thriving mobile intelligent terminals has made it possible to access to the Internet anytime and anywhere. While people enjoy the convenience, they also suffer from a series of security threats caused by cyber-attacks. IPS brings reliability and security in a network system and is regarded as one of the most popular security devices. However, the conventional IPS deployment often has some limitations, and the deployment and maintenance costs are expensive, the utilization rate is low. In order to solve these issues, an SDN-based IPS deployment is presented in this paper, which supports a unified scheduling of security applications in the whole network and load balancing among IPSs. In addition, this paper builds a test-bed and shows evaluation results. As the results, It is confirmed that the proposed scheme can achieve a shorter time for ping after the first ping and that with the load balancing, the network latency is significantly reduced.
引用
收藏
页码:26 / 31
页数:6
相关论文
共 50 条
  • [21] An OpenFlow-based Collaborative Intrusion Prevention System for Cloud Networking
    Huang, Nen-Fu
    Wang, Chuang
    Lin, Che-Wei
    Liao, I-Ju
    Kao, Chia-Nan
    [J]. PROCEEDINGS OF 2015 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATION SOFTWARE AND NETWORKS (ICCSN), 2015, : 85 - 92
  • [22] An intelligent intrusion prediction and prevention system for software defined internet of things cloud networks
    S. Kranthi
    M. Kanchana
    M. Suneetha
    [J]. Peer-to-Peer Networking and Applications, 2023, 16 : 210 - 225
  • [23] An intelligent intrusion prediction and prevention system for software defined internet of things cloud networks
    Kranthi, S.
    Kanchana, M.
    Suneetha, M.
    [J]. PEER-TO-PEER NETWORKING AND APPLICATIONS, 2023, 16 (01) : 210 - 225
  • [24] Novel Three-Tier Intrusion Detection and Prevention System in Software Defined Network
    Ali, Amir
    Yousaf, Muhammad Murtaza
    [J]. IEEE ACCESS, 2020, 8 : 109662 - 109676
  • [25] Machine Learning Based Intrusion Detection System for Software Defined Networks
    Abubakar, Atiku
    Pranggono, Bernardi
    [J]. 2017 SEVENTH INTERNATIONAL CONFERENCE ON EMERGING SECURITY TECHNOLOGIES (EST), 2017, : 138 - 143
  • [26] Implementing an intrusion detection and prevention system using Software-Defined Networking: Defending against ARP spoofing attacks and Blacklisted MAC Addresses
    Girdler, Thomas
    Vassilakis, Vassilios G.
    [J]. COMPUTERS & ELECTRICAL ENGINEERING, 2021, 90
  • [27] Linux Based Virtual Networking Laboratories for Software Defined Networking
    Djurica, Vladimir
    Minovic, Miroslav
    [J]. INTERNATIONAL JOURNAL OF ENGINEERING EDUCATION, 2017, 33 (02) : 877 - 886
  • [28] Multi-Agent Based Intrusion Prevention and Mitigation Architecture for Software Defined Networks
    Sharma, Varun
    [J]. 2017 INTERNATIONAL CONFERENCE ON INFORMATION AND COMMUNICATION TECHNOLOGY CONVERGENCE (ICTC), 2017, : 686 - 692
  • [29] SOFTWARE DEFINED NETWORKING
    Yang, Richard
    Bi, Jun
    Gu, Guofei
    [J]. CHINA COMMUNICATIONS, 2014, 11 (02) : I - II
  • [30] Software Defined Networking
    Eissa, Hend Abdelgader
    Bozed, Kenz A.
    Younis, Hadil
    [J]. 2019 19TH INTERNATIONAL CONFERENCE ON SCIENCES AND TECHNIQUES OF AUTOMATIC CONTROL AND COMPUTER ENGINEERING (STA), 2019, : 620 - 625