A Link Fabrication Attack Mitigation Approach (LiFAMA) for Software Defined Networks

نویسندگان

چکیده

In software defined networks (SDNs), the controller is a critical resource, yet it potential target for attacks as well. The conventional OpenFlow Discovery Protocol (OFPD) used in building topological view has vulnerabilities that easily allow attackers to poison network topology by creating fabricated links with malicious effects. OFDP makes use of link layer discovery protocol (LLDP) discover existing links. However, LLDP not efficient at detection. Existing approaches mitigating this problem have mostly been passive depend on observing unexpected behaviour. Examples such behaviour include latency and packet patterns trigger attack alerts. solutions their implementations cause longer time. This implies dense SDN would suffer from huge delays process. study, we propose fabrication (LFA) mitigation approach (LiFAMA), which an active one minimises uses authentication together keyed-hash-based message code (HMAC) verification database (PostgreSQL) stores records all known verified network. was implemented emulated environment using Mininet Python-based open-source (POX) controller. results show detects real time helps mitigate them. Additionally, LiFAMA out-competes LFA approach.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

A New Reliable Controller Placement Model for Software-Defined WANs

Software-Defined Network (SDNs) is a decoupled architecture that enables administrators to build a customizable and manageable network. Although the decoupled control plane provides flexible management and facilitates the task of operating the network, it is the vulnerable point of failure in SDN. To achieve a reliable control plane, multiple controller are often needed so that each switch must...

متن کامل

Attack Detection Research for Software Defined Network

Software-defined network structure of the network fundamental changes, its network equipment to achieve the hardware and software isolation and virtualization technology underlying hardware, so as to further development of the network provides a platform. This is due to the hardware and software isolation, making the network more vulnerable to attack, thus changing the topology and business inf...

متن کامل

A Decentralized Approach to Software-Defined Networks (SDNs)

Redistribution of the intelligence and management in the software defined networks (SDNs) is a potential approach to address the bottlenecks of scalability and integrity of these networks. We propose to revisit the routing concept based on the notion of regions. Using basic and consistent definition of regions, a region-based packet routing called SmartRegion Routing is presented. The flexibili...

متن کامل

A Systematic Approach for Attack Analysis and Mitigation in V2V Networks

The increasing popularity of V2V networks with the rise of driverless cars in the recent years have made them vulnerable to attacks in growing complexity. Accurate assessment of the safety and security needs of V2V networks based on context and the costs associated with attack mitigation mechanisms are significant for successful operation of these networks despite adversaries trying to disrupt ...

متن کامل

Spectrum Sensing Data Falsification Attack in Cognitive Radio Networks: An Analytical Model for Evaluation and Mitigation of Performance Degradation

Cognitive Radio (CR) networks enable dynamic spectrum access and can significantly improve spectral efficiency. Cooperative Spectrum Sensing (CSS) exploits the spatial diversity between CR users to increase sensing accuracy. However, in a realistic scenario, the trustworthy of CSS is vulnerable to Spectrum Sensing Data Falsification (SSDF) attack. In an SSDF attack, some malicious CR users deli...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

ژورنال

عنوان ژورنال: Electronics

سال: 2022

ISSN: ['2079-9292']

DOI: https://doi.org/10.3390/electronics11101581