SDN环境下的网络安全挑战与对策

A. Hegazy, Minar El-Aasser
{"title":"SDN环境下的网络安全挑战与对策","authors":"A. Hegazy, Minar El-Aasser","doi":"10.1109/SDS54264.2021.9732104","DOIUrl":null,"url":null,"abstract":"The internet has made everything connected and accessible from anywhere. However, conventional TCP/IP networks are complex and very hard to manage. Software-Defined Networking (SDN) is one of the most promising networking paradigms in current and next-generation networks. It promises to change this situation by breaking vertical integration and introduce network programmability. SDN separates control from the network and data plane. The intelligence and brain of the network are logically centralized, and the underlying network infrastructure is abstracted from the application. However, the Control Plane and Data Plane separation opens the door for security challenges and threats. In this paper, we aim to collect, analyze and classify all major security threats and their possible solutions. The security platforms that are used as countermeasures for each attack are described, followed by various security approaches for network-wide security in SDN. As well as classifying security challenges and threats according to different fields, an SDN simulation platform to study and test network performance and attacks countermeasures is also introduced. In short, this paper gathers all the present major SDN security challenges and possible solutions. Furthermore, it studies, classifies and highlights future directions for secure SDN.","PeriodicalId":394607,"journal":{"name":"2021 Eighth International Conference on Software Defined Systems (SDS)","volume":"24 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2021-12-06","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"2","resultStr":"{\"title\":\"Network Security Challenges and Countermeasures in SDN Environments\",\"authors\":\"A. Hegazy, Minar El-Aasser\",\"doi\":\"10.1109/SDS54264.2021.9732104\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"The internet has made everything connected and accessible from anywhere. However, conventional TCP/IP networks are complex and very hard to manage. Software-Defined Networking (SDN) is one of the most promising networking paradigms in current and next-generation networks. It promises to change this situation by breaking vertical integration and introduce network programmability. SDN separates control from the network and data plane. The intelligence and brain of the network are logically centralized, and the underlying network infrastructure is abstracted from the application. However, the Control Plane and Data Plane separation opens the door for security challenges and threats. In this paper, we aim to collect, analyze and classify all major security threats and their possible solutions. The security platforms that are used as countermeasures for each attack are described, followed by various security approaches for network-wide security in SDN. As well as classifying security challenges and threats according to different fields, an SDN simulation platform to study and test network performance and attacks countermeasures is also introduced. In short, this paper gathers all the present major SDN security challenges and possible solutions. Furthermore, it studies, classifies and highlights future directions for secure SDN.\",\"PeriodicalId\":394607,\"journal\":{\"name\":\"2021 Eighth International Conference on Software Defined Systems (SDS)\",\"volume\":\"24 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2021-12-06\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"2\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2021 Eighth International Conference on Software Defined Systems (SDS)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/SDS54264.2021.9732104\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2021 Eighth International Conference on Software Defined Systems (SDS)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/SDS54264.2021.9732104","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 2

摘要

互联网让一切都连接起来,从任何地方都可以访问。然而,传统的TCP/IP网络非常复杂,很难管理。软件定义网络(SDN)是当前和下一代网络中最有前途的网络模式之一。它有望通过打破垂直集成和引入网络可编程性来改变这种状况。SDN将控制从网络和数据平面中分离出来。网络的智能和大脑在逻辑上是集中的,底层的网络基础设施是从应用程序中抽象出来的。但是,控制平面和数据平面的分离为安全挑战和威胁打开了大门。在本文中,我们的目标是收集,分析和分类所有主要的安全威胁及其可能的解决方案。介绍了用于应对每种攻击的安全平台,然后介绍了SDN中实现全网安全的各种安全方法。在对不同领域的安全挑战和威胁进行分类的基础上,介绍了一个用于研究和测试网络性能和攻击对策的SDN仿真平台。总之,本文收集了当前SDN主要的安全挑战和可能的解决方案。并对安全SDN的未来发展方向进行了研究、分类和强调。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
查看原文
分享 分享
微信好友 朋友圈 QQ好友 复制链接
本刊更多论文
Network Security Challenges and Countermeasures in SDN Environments
The internet has made everything connected and accessible from anywhere. However, conventional TCP/IP networks are complex and very hard to manage. Software-Defined Networking (SDN) is one of the most promising networking paradigms in current and next-generation networks. It promises to change this situation by breaking vertical integration and introduce network programmability. SDN separates control from the network and data plane. The intelligence and brain of the network are logically centralized, and the underlying network infrastructure is abstracted from the application. However, the Control Plane and Data Plane separation opens the door for security challenges and threats. In this paper, we aim to collect, analyze and classify all major security threats and their possible solutions. The security platforms that are used as countermeasures for each attack are described, followed by various security approaches for network-wide security in SDN. As well as classifying security challenges and threats according to different fields, an SDN simulation platform to study and test network performance and attacks countermeasures is also introduced. In short, this paper gathers all the present major SDN security challenges and possible solutions. Furthermore, it studies, classifies and highlights future directions for secure SDN.
求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
自引率
0.00%
发文量
0
期刊最新文献
5G Slicing for Emergency Communications The Eighth International Conference on Software Defined Systems (SDS-2021) [Front matter] Incentivising honest behaviour in P2P networks using blockchain-based reputation Aggregation in Blockchain Ecosystem Novel File-Checksum Method for Data Duplication Removal of Patients
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
现在去查看 取消
×
提示
确定
0
微信
客服QQ
Book学术公众号 扫码关注我们
反馈
×
意见反馈
请填写您的意见或建议
请填写您的手机或邮箱
已复制链接
已复制链接
快去分享给好友吧!
我知道了
×
扫码分享
扫码分享
Book学术官方微信
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术
文献互助 智能选刊 最新文献 互助须知 联系我们:info@booksci.cn
Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。
Copyright © 2023 Book学术 All rights reserved.
ghs 京公网安备 11010802042870号 京ICP备2023020795号-1