Network Intrusion Detection And Prevention Middlebox Management In SDN

被引:0
|
作者
Wang, Wen [1 ]
He, Wenbo [1 ]
Su, Jinshu [2 ]
机构
[1] McGill Univ, Sch Comp Sci, Montreal, PQ, Canada
[2] Natl Univ Def Technol, Sch Comp, Changsha, Hunan, Peoples R China
关键词
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
In traditional networks, it is difficult to manage the distributed detection and prevention nodes of IDS and IPS due to the laborious manual deployment and independent configuration. Software defined networking (SDN) provides a flexible approach to control the underlying network infrastructures efficiently. However, the OpenFlow flow table is too simple to provide complex functions with the match-action style processing. To support more functionalities, in this paper, we propose a middlebox management architecture with SDN OpenMiddlebox, by extending OpenFlow to support middleboxes with ClickOS virtual machines (VM), so that programmable middleboxes could be deployed and managed in switches with fast booted ClickOS VMs flexibly. We then design automatic deployment and update schemes of network intrusion detection and prevention middleboxes with the centralized controller. The evaluation results show that OpenMiddlebox could manage the distributed middleboxes efficiently and is scalable to large networks, and the centralized control also improves the network intrusion detection and prevention accuracy.
引用
收藏
页数:8
相关论文
共 50 条
  • [21] A Comprehensive Network Intrusion Detection and Prevention System Architecture
    Mirpuryan, Minoo Sadat
    Tavizi, Tina
    Gharaee, Hossein
    2012 SIXTH INTERNATIONAL SYMPOSIUM ON TELECOMMUNICATIONS (IST), 2012, : 954 - 958
  • [22] Network Intrusion Detection, Prevention and Sustainable Mechanisms: A Survey
    Kannari, Phanindra Reddy
    Shariff, Noorullah C.
    Biradar, Raj Kumar L.
    INTERNATIONAL JOURNAL OF EARLY CHILDHOOD SPECIAL EDUCATION, 2022, 14 (03) : 4712 - 4724
  • [23] Intrusion detection and prevention systems in industrial IoT network
    Sharma, Sangeeta
    Kumar, Ashish
    Rathore, Navdeep Singh
    Sharma, Shivanshu
    SADHANA-ACADEMY PROCEEDINGS IN ENGINEERING SCIENCES, 2024, 49 (03):
  • [24] RIDS: An instant approach to network intrusion detection and prevention
    Ahmed, Martuza
    Pal, Rima
    Hossam, Md. Mojammel
    Hasan, Md. Khalad
    Bikas, Md. Abu Naser
    ICECT: 2009 INTERNATIONAL CONFERENCE ON ELECTRONIC COMPUTER TECHNOLOGY, PROCEEDINGS, 2009, : 362 - +
  • [25] Network Systems Intrusion: Concept, Detection, Decision, and Prevention
    Pleskonjic, Dragan
    Omerovic, Sanida
    Tomazic, Saso
    IPSI BGD TRANSACTIONS ON INTERNET RESEARCH, 2007, 3 (01): : 40 - 49
  • [26] NIDS: A network based approach to intrusion detection and prevention
    Ahmed, Martuza
    Pal, Rima
    Hossain, Md. Mojammel
    Bikas, Md. Abu Naser
    Hasan, Md. Khalad
    IACSIT-SC 2009: INTERNATIONAL ASSOCIATION OF COMPUTER SCIENCE AND INFORMATION TECHNOLOGY - SPRING CONFERENCE, 2009, : 141 - 144
  • [27] Enterprise network intrusion detection and prevention system (ENIDPS)
    Akujuobi, C. M.
    Ampah, N. K.
    SENSORS, AND COMMAND, CONTROL, COMMUNICATIONS AND INTELLIGENCE (C31) TECHNOLOGIES FOR HOMELAND SECURITY AND HOMELAND DEFENSE VI, 2007, 6538
  • [28] A Method of Network Workload Generation for Evaluation of Intrusion Detection Systems in SDN Environment
    Jankowski, Damian
    Amanowicz, Marek
    2016 INTERNATIONAL CONFERENCE ON MILITARY COMMUNICATIONS AND INFORMATION SYSTEMS (ICMCIS), 2016,
  • [29] TIBS : A Deep-Learning Model for Network Intrusion Detection for SDN Environments
    Zhang, Yilin
    Wu, Xiaoming
    Dong, Huomin
    2024 9TH INTERNATIONAL CONFERENCE ON COMPUTER AND COMMUNICATION SYSTEMS, ICCCS 2024, 2024, : 419 - 426
  • [30] Deep Recurrent Neural Network for Intrusion Detection in SDN-based Networks
    Tang, Tuan A.
    Mhamdi, Lotfi
    McLernon, Des
    Zaidi, Syed Ali Raza
    Ghogho, Mounir
    2018 4TH IEEE CONFERENCE ON NETWORK SOFTWARIZATION AND WORKSHOPS (NETSOFT), 2018, : 202 - 206