Security in Software-Defined Networking: Threats and Countermeasures

被引:0
|
作者
Zhaogang Shu
Jiafu Wan
Di Li
Jiaxiang Lin
Athanasios V. Vasilakos
Muhammad Imran
机构
[1] Fujian Agriculture and Forestry University,
[2] South China University of Technology,undefined
[3] Lulea University of Technology,undefined
[4] King Saud University,undefined
来源
关键词
Software-defined networking; SDN; Security; Security countermeasures;
D O I
暂无
中图分类号
学科分类号
摘要
In recent years, Software-Defined Networking (SDN) has been a focus of research. As a promising network architecture, SDN will possibly replace traditional networking, as it brings promising opportunities for network management in terms of simplicity, programmability, and elasticity. While many efforts are currently being made to standardize this emerging paradigm, careful attention needs to be also paid to security at this early design stage. This paper focuses on the security aspects of SDN. We begin by discussing characteristics and standards of SDN. On the basis of these, we discuss the security features as a whole and then analyze the security threats and countermeasures in detail from three aspects, based on which part of the SDN paradigm they target, i.e., the data forwarding layer, the control layer and the application layer. Countermeasure techniques that could be used to prevent, mitigate, or recover from some of such attacks are also described, while the threats encountered when developing these defensive mechanisms are highlighted.
引用
收藏
页码:764 / 776
页数:12
相关论文
共 50 条
  • [31] Enabling Practical Software-defined Networking Security Applications with OFX
    Sonchack, John
    Aviv, Adam J.
    Keller, Eric
    Smith, Jonathan M.
    23RD ANNUAL NETWORK AND DISTRIBUTED SYSTEM SECURITY SYMPOSIUM (NDSS 2016), 2016,
  • [32] A Survey on Software-Defined Networking
    Xia, Wenfeng
    Wen, Yonggang
    Foh, Chuan Heng
    Niyato, Dusit
    Xie, Haiyong
    IEEE COMMUNICATIONS SURVEYS AND TUTORIALS, 2015, 17 (01): : 27 - 51
  • [33] Software-Defined Networking: A survey
    Farhady, Hamid
    Lee, HyunYong
    Nakao, Akihiro
    COMPUTER NETWORKS, 2015, 81 : 79 - 95
  • [34] On Scalability of Software-Defined Networking
    Yeganeh, Soheil Hassas
    Tootoonchian, Amin
    Ganjali, Yashar
    IEEE COMMUNICATIONS MAGAZINE, 2013, 51 (02) : 136 - 141
  • [35] Network Security Challenges and Countermeasures for Software-Defined Smart Grids: A Survey
    Agnew, Dennis
    Boamah, Sharon
    Bretas, Arturo
    Mcnair, Janise
    SMART CITIES, 2024, 7 (04): : 2131 - 2181
  • [36] Software Defined Networking: Attacks and Countermeasures
    Abd Elazim, Nada Mostafa
    Sobh, Mohamed A.
    Bahaa-Eldin, Ayman M.
    PROCEEDINGS OF 2018 13TH INTERNATIONAL CONFERENCE ON COMPUTER ENGINEERING AND SYSTEMS (ICCES), 2018, : 555 - 567
  • [37] Malicious Packet Injection on Software-Defined Networking as a Strategy to Improve Security
    Ralekgokgo, Mmamphotha Tumelo
    Velempini, Mthulisi
    Mapunya, Semaka Sekgoari
    PROCEEDINGS OF SEVENTH INTERNATIONAL CONGRESS ON INFORMATION AND COMMUNICATION TECHNOLOGY, VOL 4, 2023, 465 : 1 - 10
  • [38] Improving Internet of Things (IoT) Security with Software-Defined Networking (SDN)
    Al Hayajneh, Abdullah
    Bhuiyan, Md Zakirul Alam
    McAndrew, Ian
    COMPUTERS, 2020, 9 (01)
  • [39] Security anomaly detection in software-defined networking based on a prediction technique
    Jafarian, Tohid
    Masdari, Mohammad
    Ghaffari, Ali
    Majidzadeh, Kambiz
    INTERNATIONAL JOURNAL OF COMMUNICATION SYSTEMS, 2020, 33 (14)
  • [40] Risk-Driven Security Metrics Development for Software-Defined Networking
    Savola, Reijo M.
    Savolainen, Pekka
    ECSA 2018: PROCEEDINGS OF THE 12TH EUROPEAN CONFERENCE ON SOFTWARE ARCHITECTURE: COMPANION PROCEEDINGS, 2018,