Dynamic Attack-Resilient Routing in Software Defined Networks

被引:13
|
作者
Mohan, Purnima Murali [1 ]
Gurusamy, Mohan [1 ]
Lim, Teng Joon [1 ]
机构
[1] Natl Univ Singapore, Dept Elect & Comp Engn, Singapore 117583, Singapore
关键词
Software defined networks; multipath routing; reliability; resilience; constrained routing; WIRELESS SENSOR NETWORKS; MULTIPATH; SECURE; SYSTEMS;
D O I
10.1109/TNSM.2018.2846294
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The scale of connected devices in the modern communication network and its heterogeneous nature have made securing the network more challenging. However, with the advent of software defined networking (SDN), the algorithmic complexity is handled at a centralized control plane and the network elements perform only data forwarding based on control plane decisions. This enables researchers to design innovative security protocols at the control plane to dynamically defend against attacks. In this paper, we propose a dynamic attack-resilient routing (ARR) approach and develop an optimization formulation for fragmented multipath routing taking reliability and load into consideration for SDN-enabled networks. Though erasure encoding has been well studied for resilient data storage, it is rarely mentioned in the context of network routing owing to its complexity, redundancy, and difficulty of satisfying practical routing constraints. In this paper, we dynamically determine the optimal route for erasure-encoded fragments of the data, in terms of attack resilience, under the constraint on allowable encoding redundancy. Since the ARR algorithm is computationally prohibitive for larger networks, we develop a heuristic solution for the same using a multipath-tree. The proposed algorithm dynamically routes the data fragments along a set of reliable and lightly loaded paths to achieve multipath diversity and thereby improve data availability at the destination even in the presence of attacks. We demonstrate the effectiveness of our proposed approach in terms of weighted path reliability, resilience, and blocking performance through simulations.
引用
收藏
页码:1146 / 1160
页数:15
相关论文
共 50 条
  • [31] On Attack-Resilient Service Placement and Availability in Edge-Enabled IoV Networks
    Talpur, Anum
    Gurusamy, Mohan
    [J]. IEEE TRANSACTIONS ON INTELLIGENT TRANSPORTATION SYSTEMS, 2023, 24 (06) : 6244 - 6256
  • [32] Attack-Resilient Connectivity Game for UAV Networks using Generative Adversarial Learning
    Yang, Bo
    Liu, Min
    [J]. AAMAS '19: PROCEEDINGS OF THE 18TH INTERNATIONAL CONFERENCE ON AUTONOMOUS AGENTS AND MULTIAGENT SYSTEMS, 2019, : 1743 - 1751
  • [33] Attack-Resilient Mix-zones over Road Networks: Architecture and Algorithms
    Palanisamy, Balaji
    Liu, Ling
    [J]. IEEE TRANSACTIONS ON MOBILE COMPUTING, 2015, 14 (03) : 495 - 508
  • [34] Attack-Resilient Distributed Control in DC Microgrids
    Sadabadi, Mahdieh S.
    [J]. 2021 EUROPEAN CONTROL CONFERENCE (ECC), 2021, : 503 - 508
  • [35] Attack-Resilient Pulse-Coupled Synchronization
    Wang, Zhenqian
    Wang, Yongqiang
    [J]. IEEE TRANSACTIONS ON CONTROL OF NETWORK SYSTEMS, 2019, 6 (01): : 338 - 351
  • [36] Stealthy attacks and attack-resilient interval observers?
    Degue, Kwassi Holali
    Le Ny, Jerome
    Efimov, Denis
    [J]. AUTOMATICA, 2022, 146
  • [37] Safeguarding Buyers with Attack-Resilient Reputation Parameters
    Sharma, Neeraj Kumar
    Gaur, Vibha
    Bedi, Punam
    [J]. JOURNAL OF THEORETICAL AND APPLIED ELECTRONIC COMMERCE RESEARCH, 2016, 11 (01): : 46 - 66
  • [38] Dynamic metric OSPF-based routing protocol for Software Defined Networks
    Rego, Albert
    Sendra, Sandra
    Jimenez, Jose M.
    Lloret, Jaime
    [J]. CLUSTER COMPUTING-THE JOURNAL OF NETWORKS SOFTWARE TOOLS AND APPLICATIONS, 2019, 22 (03): : 705 - 720
  • [39] Dynamic metric OSPF-based routing protocol for Software Defined Networks
    Albert Rego
    Sandra Sendra
    Jose M. Jimenez
    Jaime Lloret
    [J]. Cluster Computing, 2019, 22 : 705 - 720
  • [40] DDoS Attack in Software Defined Networks: A Survey
    XU Xiaoqiong
    YU Hongfang
    YANG Kun
    [J]. ZTE Communications, 2017, 15 (03) : 13 - 19