{"title":"A Study on SDN security enhancement using open source IDS/IPS Suricata","authors":"Kiho Nam, Keecheon Kim","doi":"10.1109/ICTC.2018.8539455","DOIUrl":null,"url":null,"abstract":"Software Defined Network (SDN) is a next-generation networking technology that transforms existing closed network environments based on individual network vendors technology into a software-based, flexible, centralized management environment that is programmable based on simplification through network abstraction. For this reason, unlike traditional networks, SDN has some strengths over some security issues. However, most of the existing network security problems and vulnerabilities exist in the SDN environment. And various attacks targeting this are occurring. This paper examines how to implement network security functions using SDN technology for these security problems. In addition, this paper proposes a structure for enhancing the security function of SDN by using existing open source IDS / IPS software Suricata.","PeriodicalId":417962,"journal":{"name":"2018 International Conference on Information and Communication Technology Convergence (ICTC)","volume":"13 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2018-10-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"27","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2018 International Conference on Information and Communication Technology Convergence (ICTC)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICTC.2018.8539455","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 27
Abstract
Software Defined Network (SDN) is a next-generation networking technology that transforms existing closed network environments based on individual network vendors technology into a software-based, flexible, centralized management environment that is programmable based on simplification through network abstraction. For this reason, unlike traditional networks, SDN has some strengths over some security issues. However, most of the existing network security problems and vulnerabilities exist in the SDN environment. And various attacks targeting this are occurring. This paper examines how to implement network security functions using SDN technology for these security problems. In addition, this paper proposes a structure for enhancing the security function of SDN by using existing open source IDS / IPS software Suricata.