FOCES: Detecting Forwarding Anomalies in Software Defined Networks

被引:16
|
作者
Zhang, Peng [1 ,2 ]
Xu, Shimin [1 ]
Yang, Zuoru [1 ]
Li, Hao [1 ,2 ]
Li, Qi [3 ]
Wang, Huanzhao [1 ]
Hu, Chengchen [1 ,2 ]
机构
[1] Xi An Jiao Tong Univ, Dept Comp Sci & Technol, Xian, Peoples R China
[2] Tsinghua Univ, MOE Key Lab Intelligent Networks & Network Secur, Shenzhen, Peoples R China
[3] Tsinghua Univ, Grad Sch Shenzhen, Shenzhen, Peoples R China
基金
中国国家自然科学基金;
关键词
Software defined networks; Forwarding anomaly; Equation system;
D O I
10.1109/ICDCS.2018.00085
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
A crucial requirement for Software Defined Network (SDN) is that data plane forwarding behaviors should always agree with control plane policies. Such requirement cannot be met when there are forwarding anomalies, where packets deviate from the paths specified by the controller. Most anomaly detection methods for SDN install dedicated rules to collect statistics of each flow, and check whether the statistics conform to the flow conservation principle. Such per-flow detection methods have a limited detection scope: they look at one flow each time, thus can only check a limited number of flows simultaneously. In addition, dedicated rules for statistics collection can impose a large overhead on flow tables of SDN switches. To this end, this paper presents FOCES, a network-wide forwarding anomaly detection method in SDN. Different from previous methods, FOCES applies a new kind of flow conservation principle at network wide, and can check forwarding behaviors of all flows in the network simultaneously, without installing any dedicated rules. Experiments show FOCES can achieve a detection precision higher than 90% for four network topologies, even when packet loss rates are as high as 10%.
引用
收藏
页码:830 / 840
页数:11
相关论文
共 50 条
  • [21] A Prioritized Queueing Model of OpenFlow Packet Forwarding in Software-Defined Core Networks
    Xiong B.
    Zuo M.-K.
    Li W.
    Wang J.
    [J]. Tien Tzu Hsueh Pao/Acta Electronica Sinica, 2019, 47 (10): : 2040 - 2049
  • [22] Flexible Cyclic Queuing and Forwarding for Time-Sensitive Software-Defined Networks
    Huang, Yudong
    Wang, Shuo
    Zhang, Xinyuan
    Huang, Tao
    Liu, Yunjie
    [J]. IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2023, 20 (01): : 533 - 546
  • [23] A Unified Unicast and Multicast Routing and Forwarding Algorithm for Software-Defined Datacenter Networks
    Jia, Wen-Kang
    Wang, Li-Chun
    [J]. IEEE JOURNAL ON SELECTED AREAS IN COMMUNICATIONS, 2013, 31 (12) : 2646 - 2657
  • [24] Suspicious Flow Forwarding for Multiple Intrusion Detection Systems on Software-Defined Networks
    Ha, Taejin
    Yoon, Seunghyun
    Risdianto, Aris Cahyadi
    Kim, JongWon
    Lim, Hyuk
    [J]. IEEE NETWORK, 2016, 30 (06): : 22 - 27
  • [25] Detecting DDoS based on attention mechanism for Software-Defined Networks
    Yoon, Namkyung
    Kim, Hwangnam
    [J]. JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2024, 230
  • [26] Detecting P2P Botnet in Software Defined Networks
    Su, Shang-Chiuan
    Chen, Yi-Ren
    Tsai, Shi-Chun
    Lin, Yi-Bing
    [J]. SECURITY AND COMMUNICATION NETWORKS, 2018,
  • [27] Detecting Intrusion Using Multiple Datasets in Software-Defined Networks
    Dang, Quang-Vinh
    [J]. FUTURE DATA AND SECURITY ENGINEERING. BIG DATA, SECURITY AND PRIVACY, SMART CITY AND INDUSTRY 4.0 APPLICATIONS, FDSE 2022, 2022, 1688 : 739 - 746
  • [28] An approach to detecting distributed denial of service attacks in software defined networks
    Sangodoyin, Abimbola
    Modu, Babagana
    Awan, Irfan
    Disso, Jules Pagna
    [J]. 2018 IEEE 6TH INTERNATIONAL CONFERENCE ON FUTURE INTERNET OF THINGS AND CLOUD (FICLOUD 2018), 2018, : 436 - 443
  • [29] An Adaptive Scheme for Data Forwarding in Software Defined Network
    Xie, Liang
    Zhao, Zhifeng
    Zhou, Yifan
    Wang, Gang
    Ying, Qianlan
    Zhang, Honggang
    [J]. 2014 SIXTH INTERNATIONAL CONFERENCE ON WIRELESS COMMUNICATIONS AND SIGNAL PROCESSING (WCSP), 2014,
  • [30] EnFlow: An Energy-Efficient Fast Flow Forwarding Scheme for Software-Defined Networks
    Chaudhary, Rajat
    Kumar, Neeraj
    [J]. IEEE TRANSACTIONS ON INTELLIGENT TRANSPORTATION SYSTEMS, 2021, 22 (08) : 5293 - 5309