Secure and dependable software defined networks

被引:73
|
作者
Akhunzada, Adnan [1 ]
Gani, Abdullah [1 ]
Anuar, Nor Badrul [1 ]
Abdelaziz, Ahmed [1 ]
Khan, Muhammad Khurram [2 ]
Hayat, Amir [3 ]
Khan, Samee U. [4 ]
机构
[1] Univ Malaya, Fac Comp Sci & Informat Technol, Ctr Mobile Cloud Comp Res C4MCCR, Kuala Lumpur 50603, Malaysia
[2] King Saud Univ, CoEIA, Riyadh 11451, Saudi Arabia
[3] COMSATS Inst Informat Technol, Dept Comp Sci, Appl Secur Engn Res Grp, Islamabad, Pakistan
[4] N Dakota State Univ, Dept Elect & Comp Engn, Fargo, ND 58108 USA
关键词
Software defined networks; Programmable networks; Open Flow; Policy enforcement; Middle-boxes; CHALLENGES; TAXONOMY; FUTURE;
D O I
10.1016/j.jnca.2015.11.012
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
The revolutionary concept of Software Defined Networks (SDNs) potentially provides flexible and well-managed next-generation networks. All the hype surrounding the SDNs is predominantly because of its centralized management functionality, the separation of the control plane from the data forwarding plane, and enabling innovation through network programmability. Despite the promising architecture of SDNs, security was not considered as part of the initial design. Moreover, security concerns are potentially augmented considering the logical centralization of network intelligence. Furthermore, the security and dependability of the SDN has largely been a neglected topic and remains an open issue. The paper presents a broad overview of the security implications of each SDN layer/interface. This paper contributes further by devising a contemporary layered/interface taxonomy of the reported security vulnerabilities, attacks, and challenges of SDN. We also highlight and analyze the possible threats on each layer/interface of SDN to help design secure SDNs. Moreover, the ensuing paper contributes by presenting the state-of-the-art SDNs security solutions. The categorization of solutions is followed by a critical analysis and discussion to devise a comprehensive thematic taxonomy. We advocate the production of secure and dependable SDNs by presenting potential requirements and key enablers. Finally, in an effort to anticipate secure and dependable SDNs, we present the ongoing open security issues, challenges and future research directions. (C) 2015 Elsevier Ltd. All rights reserved.
引用
收藏
页码:199 / 221
页数:23
相关论文
共 50 条
  • [21] An Architecture for Secure Software Defined Radio
    Li, Chunxiao
    Raghunathan, Anand
    Jha, Niraj K.
    DATE: 2009 DESIGN, AUTOMATION & TEST IN EUROPE CONFERENCE & EXHIBITION, VOLS 1-3, 2009, : 448 - +
  • [22] Secure Collecting, Optimizing, and Deploying of Firewall Rules in Software-Defined Networks
    Kim S.
    Yoon S.
    Narantuya J.
    Lim H.
    IEEE Access, 2020, 8 : 15166 - 15177
  • [23] Byzantine-Resilient Secure Software-Defined Networks with Multiple Controllers
    Li, He
    Li, Peng
    Guo, Song
    Yu, Shui
    2014 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS (ICC), 2014, : 695 - 700
  • [24] Secure and QoS Aware Architecture for Cloud Using Software Defined Networks and Hadoop
    Desai, Abhijeet
    Nagegowda, K. S.
    Ninikrishna, T.
    2015 INTERNATIONAL CONFERENCE ON COMPUTING AND NETWORK COMMUNICATIONS (COCONET), 2015, : 369 - 373
  • [25] Software Defined Networks
    Leon-Garcia, Alberto
    Ashwood-Smith, Peter
    Ganjali, Yashar
    COMPUTER NETWORKS, 2015, 92 : 209 - 210
  • [26] SOFTWARE DEFINED NETWORKS
    Li, Chung-Sheng
    Liao, Wanjiun
    IEEE COMMUNICATIONS MAGAZINE, 2013, 51 (02) : 113 - 113
  • [27] SOFTWARE DEFINED NETWORKS
    Doughty, Mark
    JOURNAL OF THE INSTITUTE OF TELECOMMUNICATIONS PROFESSIONALS, 2015, 9 : 40 - 44
  • [28] Byzantine-Resilient Secure Software-Defined Networks with Multiple Controllers in Cloud
    Li, He
    Li, Peng
    Guo, Song
    Nayak, Amiya
    IEEE TRANSACTIONS ON CLOUD COMPUTING, 2014, 2 (04) : 436 - 447
  • [29] Toward secure software-defined networks against distributed denial of service attack
    Kshira Sagar Sahoo
    Sanjaya Kumar Panda
    Sampa Sahoo
    Bibhudatta Sahoo
    Ratnakar Dash
    The Journal of Supercomputing, 2019, 75 : 4829 - 4874
  • [30] Software-Defined Perimeter (SDP): State of the Art Secure Solution for Modern Networks
    Moubayed, Abdallah
    Refaey, Ahmed
    Shami, Abdallah
    IEEE NETWORK, 2019, 33 (05): : 226 - 233