Securing SDN Southbound and Data Plane Communication with IBC

被引:13
|
作者
Lam, JunHuy [1 ]
Lee, Sang-Gon [1 ]
Lee, Hoon-Jae [1 ]
Oktian, Yustus Eko [1 ]
机构
[1] Dongseo Univ, Dept Ubiquitous IT, Div Comp & Informat Engn, Busan 617716, South Korea
基金
新加坡国家研究基金会;
关键词
KEY AGREEMENT PROTOCOLS; IDENTITY;
D O I
10.1155/2016/1708970
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In software-defined network (SDN), the southbound protocol defines the communication between the control plane and the data plane. The agreed protocol, OpenFlow, suggests securing the southbound communication with Transport Layer Security (TLS). However, most current SDN projects do not implement the security segment, with only a few exceptions such asOpenDayLight, HP VANSDN, and ONOS implementing TLS in the southbound communication. From the telecommunication providers' perspective, one of the major SDN consumers besides data centers, the data plane becomes much more complicated with the addition of wireless data plane as it involves numerous wireless technologies. Therefore, the complicated resource management along with the security of such a data plane can hinder the migration to SDN. In this paper, we propose securing the distributed SDN communication with a multidomain capable Identity-Based Cryptography (IBC) protocol, particularly for the southbound and wireless data plane communication. We also analyze the TLS-secured Message Queuing Telemetry Transport (MQTT) message exchanges to find out the possible bandwidth saved with IBC.
引用
收藏
页数:12
相关论文
共 50 条
  • [41] Fast failure detection and recovery in SDN with stateful data plane
    Cascone, Carmelo
    Sanvito, Davide
    Pollini, Luca
    Capone, Antonio
    Sanso, Brunilde
    INTERNATIONAL JOURNAL OF NETWORK MANAGEMENT, 2017, 27 (02)
  • [42] A tool for tracing network data plane via SDN/OpenFlow
    Yangyang WANG
    Jun BI
    Keyao ZHANG
    ScienceChina(InformationSciences), 2017, 60 (02) : 74 - 86
  • [43] Automation of Modular and Programmable Control and Data Plane SDN Networks
    Zaballa, Eder Ollora
    Franco, David
    Jacob, Eduardo
    Higuero, Marivi
    Berger, Michael Stubert
    PROCEEDINGS OF THE 2021 17TH INTERNATIONAL CONFERENCE ON NETWORK AND SERVICE MANAGEMENT (CNSM 2021): SMART MANAGEMENT FOR FUTURE NETWORKS AND SERVICES, 2021, : 375 - 379
  • [44] A Wireless Control Plane for Deploying SDN in Data Center Networks
    Wei, Xianglin
    Sun, Qin
    2017 17TH IEEE INTERNATIONAL CONFERENCE ON COMMUNICATION TECHNOLOGY (ICCT 2017), 2017, : 981 - 985
  • [46] Mynah: Enabling Lightweight Data Plane Authentication for SDN Controllers
    Kang, Jin Won
    Park, Sae Hyong
    You, Jaeho
    24TH INTERNATIONAL CONFERENCE ON COMPUTER COMMUNICATIONS AND NETWORKS ICCCN 2015, 2015,
  • [47] Stick to the Script: Monitoring The Policy Compliance of SDN Data Plane
    Zhang, Peng
    Li, Hao
    Hu, Chengchen
    Hu, Liujia
    Xiong, Lei
    PROCEEDINGS OF THE 2016 SYMPOSIUM ON ARCHITECTURES FOR NETWORKING AND COMMUNICATIONS SYSTEMS (ANCS'16), 2016, : 81 - 86
  • [48] Network Function Virtualization Enablement Within SDN Data Plane
    Mekky, Hesham
    Hao, Fang
    Mukherjee, Sarit
    Lakshman, T. V.
    Zhang, Zhi-Li
    IEEE INFOCOM 2017 - IEEE CONFERENCE ON COMPUTER COMMUNICATIONS, 2017,
  • [49] Securing Cloud, SDN and Large Data Network Environments from Emerging DDoS Attacks
    Smith-perrone, Jeanette
    Sims, Jeremy
    PROCEEDINGS OF THE 7TH INTERNATIONAL CONFERENCE ON CLOUD COMPUTING, DATA SCIENCE AND ENGINEERING (CONFLUENCE 2017), 2017, : 466 - 469
  • [50] Securing Networks using SDN and Machine Learning
    Comaneci, Dragos
    Dobre, Ciprian
    2018 21ST IEEE INTERNATIONAL CONFERENCE ON COMPUTATIONAL SCIENCE AND ENGINEERING (CSE 2018), 2018, : 194 - 200