FOCES: Detecting Forwarding Anomalies in Software Defined Networks

被引:16
|
作者
Zhang, Peng [1 ,2 ]
Xu, Shimin [1 ]
Yang, Zuoru [1 ]
Li, Hao [1 ,2 ]
Li, Qi [3 ]
Wang, Huanzhao [1 ]
Hu, Chengchen [1 ,2 ]
机构
[1] Xi An Jiao Tong Univ, Dept Comp Sci & Technol, Xian, Peoples R China
[2] Tsinghua Univ, MOE Key Lab Intelligent Networks & Network Secur, Shenzhen, Peoples R China
[3] Tsinghua Univ, Grad Sch Shenzhen, Shenzhen, Peoples R China
基金
中国国家自然科学基金;
关键词
Software defined networks; Forwarding anomaly; Equation system;
D O I
10.1109/ICDCS.2018.00085
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
A crucial requirement for Software Defined Network (SDN) is that data plane forwarding behaviors should always agree with control plane policies. Such requirement cannot be met when there are forwarding anomalies, where packets deviate from the paths specified by the controller. Most anomaly detection methods for SDN install dedicated rules to collect statistics of each flow, and check whether the statistics conform to the flow conservation principle. Such per-flow detection methods have a limited detection scope: they look at one flow each time, thus can only check a limited number of flows simultaneously. In addition, dedicated rules for statistics collection can impose a large overhead on flow tables of SDN switches. To this end, this paper presents FOCES, a network-wide forwarding anomaly detection method in SDN. Different from previous methods, FOCES applies a new kind of flow conservation principle at network wide, and can check forwarding behaviors of all flows in the network simultaneously, without installing any dedicated rules. Experiments show FOCES can achieve a detection precision higher than 90% for four network topologies, even when packet loss rates are as high as 10%.
引用
收藏
页码:830 / 840
页数:11
相关论文
共 50 条
  • [1] FADE: Detecting Forwarding Anomaly in Software-Defined Networks
    Pang, Chunhui
    Jiang, Yong
    Li, Qi
    [J]. 2016 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS (ICC), 2016,
  • [2] Rule Anomalies Detecting and Resolving for Software Defined Networks
    Wang, Pengzhan
    Huang, Liusheng
    Xu, Hongli
    Leng, Bing
    Guo, Hansong
    [J]. 2015 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2015,
  • [3] Garbage Collection of Forwarding Rules in Software Defined Networks
    ul Huque, Md Tanvir Ishtaique
    Jourjon, Guillaume
    Gramoli, Vincent
    [J]. IEEE COMMUNICATIONS MAGAZINE, 2017, 55 (06) : 39 - 45
  • [4] A Review of Forwarding Strategies in Transport Software Defined Networks
    Shah, Awais Aziz
    Piro, Giuseppe
    Grieco, Luigi Alfredo
    Boggia, Gennaro
    [J]. 2020 22ND INTERNATIONAL CONFERENCE ON TRANSPARENT OPTICAL NETWORKS (ICTON 2020), 2020,
  • [5] On Diagnosis of Forwarding Plane via Static Forwarding Rules in Software Defined Networks
    Kozat, Utas C.
    Liang, Guanfeng
    Koekten, Koray
    [J]. 2014 PROCEEDINGS IEEE INFOCOM, 2014, : 1716 - 1724
  • [6] Efficient Forwarding Anomaly Detection in Software-Defined Networks
    Li, Qi
    Liu, Yunpeng
    Liu, Zhuotao
    Zhang, Peng
    Pang, Chunhui
    [J]. IEEE TRANSACTIONS ON PARALLEL AND DISTRIBUTED SYSTEMS, 2021, 32 (11) : 2676 - 2690
  • [7] On detecting compromised controller in software defined networks
    Anand, N.
    Babu, Sarath
    Manoj, B. S.
    [J]. COMPUTER NETWORKS, 2018, 137 : 107 - 118
  • [8] Poster: Enabling Fast Forwarding in Hybrid Software-Defined Networks
    Sun, Yijun
    Guo, Zehua
    Dou, Songshi
    Zhang, Junjie
    Li, Changlin
    Ouyang, Xiang
    [J]. 2021 IEEE 29TH INTERNATIONAL CONFERENCE ON NETWORK PROTOCOLS (ICNP 2021), 2021,
  • [9] Scalable and fair forwarding of elephant and mice traffic in software defined networks
    Hegde, Saumya
    Koolagudi, Shashidhar G.
    Bhattacharya, Swapan
    [J]. COMPUTER NETWORKS, 2015, 92 : 330 - 340
  • [10] Detecting Saturation Attacks in Software-Defined Networks
    Li, Zhiyuan
    Xing, Weijia
    Xu, Dianxiang
    [J]. 2018 IEEE INTERNATIONAL CONFERENCE ON INTELLIGENCE AND SECURITY INFORMATICS (ISI), 2018, : 163 - 168