A survey and classification of the security anomaly detection mechanisms in software defined networks

被引:34
|
作者
Jafarian, Tohid [1 ]
Masdari, Mohammad [1 ]
Ghaffari, Ali [2 ]
Majidzadeh, Kambiz [1 ]
机构
[1] Islamic Azad Univ, Dept Comp Engn, Urmia Branch, Orumiyeh, Iran
[2] Islamic Azad Univ, Dept Comp Engn, Tabriz Branch, Tabriz, Iran
关键词
Sdns; OpenFlow; Anomaly detection; Data plane; Security challenges; Virtual networks; FLOW; MITIGATION; TAXONOMY; SDN;
D O I
10.1007/s10586-020-03184-1
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Software defined network (SDN) decouples the network control and data planes. Despite various advantages of SDNs, they are vulnerable to various security attacks such anomalies, intrusions, and Denial-of-Service (DoS) attacks and so on. On the other hand, any anomaly and intrusion in SDNs can affect many important domains such as banking system and national security. Therefore, the anomaly detection topic is a broad research domain, and to mitigate these security problems, a great deal of research has been conducted in the literature. In this paper, the state-of-the-art schemes applied in detecting and mitigating anomalies in SDNs are explained, categorized, and compared. This paper categorizes the SDN anomaly detection mechanisms into five categories: (1) flow counting scheme, (2) information-based scheme, (3) entropy-based scheme, (4) deep learning, and (5) hybrid scheme. The research gaps and major existing research issues regarding SDN anomaly detection are highlighted. We hope that the analyses, comparisons, and classifications might provide directions for further research.
引用
收藏
页码:1235 / 1253
页数:19
相关论文
共 50 条
  • [1] A survey and classification of the security anomaly detection mechanisms in software defined networks
    Tohid Jafarian
    Mohammad Masdari
    Ali Ghaffari
    Kambiz Majidzadeh
    [J]. Cluster Computing, 2021, 24 : 1235 - 1253
  • [2] Security of Software Defined Networks: A survey
    Alsmadr, Izzat
    Xu, Dianxiang
    [J]. COMPUTERS & SECURITY, 2015, 53 : 79 - 108
  • [3] Security in Software Defined Networks: A Survey
    Ahmad, Ijaz
    Namal, Suneth
    Ylianttila, Mika
    Gurtov, Andrei
    [J]. IEEE COMMUNICATIONS SURVEYS AND TUTORIALS, 2015, 17 (04): : 2317 - 2346
  • [4] A Survey of Security in Software Defined Networks
    Scott-Hayward, Sandra
    Natarajan, Sriram
    Sezer, Sakir
    [J]. IEEE COMMUNICATIONS SURVEYS AND TUTORIALS, 2016, 18 (01): : 623 - 654
  • [5] A Survey of Traffic Classification in Software Defined Networks
    Yan, Jinghua
    Yuan, Jing
    [J]. PROCEEDINGS OF 2018 1ST IEEE INTERNATIONAL CONFERENCE ON HOT INFORMATION-CENTRIC NETWORKING (HOTICN 2018), 2018, : 200 - 206
  • [6] Anomaly and intrusion detection using deep learning for software-defined networks: A survey
    Ruffo, Vitor Gabriel da Silva
    Lent, Daniel Matheus Brandao
    Komarchesqui, Mateus
    Schiavon, Vinicius Ferreira
    de Assis, Marcos Vinicius Oliveira
    Carvalho, Luiz Fernando
    Proenca Jr, Mario Lemes
    [J]. EXPERT SYSTEMS WITH APPLICATIONS, 2024, 256
  • [7] Anomaly Detection in Smart Grids based on Software Defined Networks
    Jung, Oliver
    Smith, Paul
    Magin, Julian
    Reuter, Lenhard
    [J]. PROCEEDINGS OF THE 8TH INTERNATIONAL CONFERENCE ON SMART CITIES AND GREEN ICT SYSTEMS (SMARTGREENS), 2019, : 157 - 164
  • [8] Efficient Forwarding Anomaly Detection in Software-Defined Networks
    Li, Qi
    Liu, Yunpeng
    Liu, Zhuotao
    Zhang, Peng
    Pang, Chunhui
    [J]. IEEE TRANSACTIONS ON PARALLEL AND DISTRIBUTED SYSTEMS, 2021, 32 (11) : 2676 - 2690
  • [9] ANOMALY DETECTION IN ATM-GRADE SOFTWARE DEFINED NETWORKS
    Lellek, Philipp
    Leydold, Peter
    Vojnoski, Igor
    Eier, Dieter
    [J]. 2021 INTEGRATED COMMUNICATIONS NAVIGATION AND SURVEILLANCE CONFERENCE (ICNS), 2021,
  • [10] Virtual Security Functions and Their Placement in Software Defined Networks: A Survey
    Demirci, Sedef
    Demirci, Mehmet
    Sagiroglu, Seref
    [J]. GAZI UNIVERSITY JOURNAL OF SCIENCE, 2019, 32 (03): : 833 - 851