Dynamic Attack-Resilient Routing in Software Defined Networks

被引:13
|
作者
Mohan, Purnima Murali [1 ]
Gurusamy, Mohan [1 ]
Lim, Teng Joon [1 ]
机构
[1] Natl Univ Singapore, Dept Elect & Comp Engn, Singapore 117583, Singapore
关键词
Software defined networks; multipath routing; reliability; resilience; constrained routing; WIRELESS SENSOR NETWORKS; MULTIPATH; SECURE; SYSTEMS;
D O I
10.1109/TNSM.2018.2846294
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The scale of connected devices in the modern communication network and its heterogeneous nature have made securing the network more challenging. However, with the advent of software defined networking (SDN), the algorithmic complexity is handled at a centralized control plane and the network elements perform only data forwarding based on control plane decisions. This enables researchers to design innovative security protocols at the control plane to dynamically defend against attacks. In this paper, we propose a dynamic attack-resilient routing (ARR) approach and develop an optimization formulation for fragmented multipath routing taking reliability and load into consideration for SDN-enabled networks. Though erasure encoding has been well studied for resilient data storage, it is rarely mentioned in the context of network routing owing to its complexity, redundancy, and difficulty of satisfying practical routing constraints. In this paper, we dynamically determine the optimal route for erasure-encoded fragments of the data, in terms of attack resilience, under the constraint on allowable encoding redundancy. Since the ARR algorithm is computationally prohibitive for larger networks, we develop a heuristic solution for the same using a multipath-tree. The proposed algorithm dynamically routes the data fragments along a set of reliable and lightly loaded paths to achieve multipath diversity and thereby improve data availability at the destination even in the presence of attacks. We demonstrate the effectiveness of our proposed approach in terms of weighted path reliability, resilience, and blocking performance through simulations.
引用
收藏
页码:1146 / 1160
页数:15
相关论文
共 50 条
  • [1] Towards Attack-Resilient Communications for Smart Grids with Software-Defined Networking
    Wu, Yifu
    Wei, Jin
    [J]. 2017 IEEE POWER & ENERGY SOCIETY GENERAL MEETING, 2017,
  • [2] Multipath resilient routing for endogenous secure software defined networks
    Ren, Quan
    Hu, Tao
    Wu, Jiangxing
    Hu, Yuxiang
    He, Lei
    Lan, Julong
    [J]. COMPUTER NETWORKS, 2021, 194
  • [3] Dynamic Routing in Software-Defined Networks
    Mulla, Mohammed Moin
    Khot, Akshay
    Patil, Anusha
    Chandani, D. G.
    [J]. EMERGING RESEARCH IN ELECTRONICS, COMPUTER SCIENCE AND TECHNOLOGY, ICERECT 2018, 2019, 545 : 1027 - 1037
  • [4] GlobalTrust: An Attack-Resilient Reputation System for Tactical Networks
    Chen, Xin
    Cho, Jin-Hee
    Zhu, Sencun
    [J]. 2014 ELEVENTH ANNUAL IEEE INTERNATIONAL CONFERENCE ON SENSING, COMMUNICATION, AND NETWORKING (SECON), 2014, : 275 - 283
  • [5] Attack-resilient time synchronization for wireless sensor networks
    Song, Hui
    Zhu, Sencun
    Cao, Guohong
    [J]. AD HOC NETWORKS, 2007, 5 (01) : 112 - 125
  • [6] Design and Implementation of Attack-Resilient Cyberphysical Systems WITH A FOCUS ON ATTACk-RESILIENT STATE ESTIMATORS
    Pajic, Miroslav
    Weimer, James
    Bezzo, Nicola
    Sokolsky, Oleg
    Pappas, George J.
    Lee, Insup
    [J]. IEEE CONTROL SYSTEMS MAGAZINE, 2017, 37 (02): : 66 - 81
  • [7] Attack-Resilient Sensor Fusion
    Ivanov, Radoslav
    Pajic, Miroslav
    Lee, Insup
    [J]. 2014 DESIGN, AUTOMATION AND TEST IN EUROPE CONFERENCE AND EXHIBITION (DATE), 2014,
  • [8] Attack-Resilient Smart Grid Dynamic State Estimation Algorithm
    Rana, Md Masud
    Abdelhadi, Ahmed
    [J]. 2020 6TH IEEE INTERNATIONAL SYMPOSIUM ON SYSTEMS ENGINEERING (IEEE ISSE 2020), 2020,
  • [9] Delay Attack-Resilient Clock Synchronization for Wireless Sensor Networks
    Kim, Eui-Jik
    In, Jeongsik
    Youm, Sungkwan
    Kang, Chul-Hee
    [J]. IEICE TRANSACTIONS ON INFORMATION AND SYSTEMS, 2012, E95D (01): : 188 - 191
  • [10] Attack-Resilient Dynamic Event-Triggered Synchronization of Fuzzy Reaction–Diffusion Dynamic Networks With Multiple Cyberattacks
    Wu, Tao
    Cao, Jinde
    Park, Ju H.
    Shi, Kaibo
    Xiong, Lianglin
    Huang, Tingwen
    [J]. IEEE TRANSACTIONS ON FUZZY SYSTEMS, 2024, 32 (02) : 498 - 509