Securing SDN Southbound and Data Plane Communication with IBC

被引:13
|
作者
Lam, JunHuy [1 ]
Lee, Sang-Gon [1 ]
Lee, Hoon-Jae [1 ]
Oktian, Yustus Eko [1 ]
机构
[1] Dongseo Univ, Dept Ubiquitous IT, Div Comp & Informat Engn, Busan 617716, South Korea
基金
新加坡国家研究基金会;
关键词
KEY AGREEMENT PROTOCOLS; IDENTITY;
D O I
10.1155/2016/1708970
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In software-defined network (SDN), the southbound protocol defines the communication between the control plane and the data plane. The agreed protocol, OpenFlow, suggests securing the southbound communication with Transport Layer Security (TLS). However, most current SDN projects do not implement the security segment, with only a few exceptions such asOpenDayLight, HP VANSDN, and ONOS implementing TLS in the southbound communication. From the telecommunication providers' perspective, one of the major SDN consumers besides data centers, the data plane becomes much more complicated with the addition of wireless data plane as it involves numerous wireless technologies. Therefore, the complicated resource management along with the security of such a data plane can hinder the migration to SDN. In this paper, we propose securing the distributed SDN communication with a multidomain capable Identity-Based Cryptography (IBC) protocol, particularly for the southbound and wireless data plane communication. We also analyze the TLS-secured Message Queuing Telemetry Transport (MQTT) message exchanges to find out the possible bandwidth saved with IBC.
引用
收藏
页数:12
相关论文
共 50 条
  • [21] SDNsec: Forwarding Accountability for the SDN Data Plane
    Sasaki, Takayuki
    Pappas, Christos
    Lee, Taeho
    Hoefler, Torsten
    Perrig, Adrian
    2016 25TH INTERNATIONAL CONFERENCE ON COMPUTER COMMUNICATIONS AND NETWORKS (ICCCN), 2016,
  • [22] Fault Tolerant Data Plane Using SDN
    Yamansavascilar, Baris
    Baktir, Ahmet Cihat
    Ozgovde, Atay
    Ersoy, Cem
    2017 25TH SIGNAL PROCESSING AND COMMUNICATIONS APPLICATIONS CONFERENCE (SIU), 2017,
  • [23] Deep and Automated SDN Data Plane Analysis
    Saied, Wejdene
    Ben Souayeh, Nihel Ben Youssef
    Saadaoui, Amina
    Bouhoula, Adel
    2019 27TH INTERNATIONAL CONFERENCE ON SOFTWARE, TELECOMMUNICATIONS AND COMPUTER NETWORKS (SOFTCOM), 2019, : 24 - 29
  • [24] The (Surprising) Computational Power of the SDN Data Plane
    Newport, Calvin
    Zhou, Wenchao
    2015 IEEE CONFERENCE ON COMPUTER COMMUNICATIONS (INFOCOM), 2015,
  • [25] Security Policy Violations in SDN Data Plane
    Li, Qi
    Chen, Yanyu
    Lee, Patrick P. C.
    Xu, Mingwei
    Ren, Kui
    IEEE-ACM TRANSACTIONS ON NETWORKING, 2018, 26 (04) : 1715 - 1727
  • [26] Network Programming and Probabilistic Sketching for Securing the Data Plane
    Shamseddine, Maha
    Itani, Wassim
    Chehab, Ali
    Kayssi, Ayman
    SECURITY AND COMMUNICATION NETWORKS, 2018,
  • [27] Traffic Management Applications for Stateful SDN Data Plane
    Cascone, Carmelo
    Pollini, Luca
    Sanvito, Davide
    Capone, Antonio
    2015 FOURTH EUROPEAN WORKSHOP ON SOFTWARE DEFINED NETWORKS - EWSDN 2015, 2015, : 85 - 90
  • [28] A technique to monitor threats in SDN data plane computation
    Desgeorges, Loic
    Georges, Jean-Philippe
    Divoux, Thierry
    2021 IEEE 22ND INTERNATIONAL CONFERENCE ON HIGH PERFORMANCE SWITCHING AND ROUTING (IEEE HPSR), 2021,
  • [29] Measuring the Consistency Between Data and Control Plane in SDN
    Lei, Kai
    Lin, Guanjie
    Zhang, Meimei
    Li, Keke
    Li, Qi
    Jing, Xiaojun
    Wang, Peng
    IEEE-ACM TRANSACTIONS ON NETWORKING, 2023, 31 (02) : 511 - 525
  • [30] Network Anti-Spoofing with SDN Data plane
    Afek, Yehuda
    Bremler-Barr, Anat
    Shafir, Lior
    IEEE INFOCOM 2017 - IEEE CONFERENCE ON COMPUTER COMMUNICATIONS, 2017,