首页> 外文会议>International Conference on Wireless Communications and Signal Processing >A novel method against the firewall bypass threat in OpenFlow networks
【24h】

A novel method against the firewall bypass threat in OpenFlow networks

机译:一种针对OpenFlow网络中的防火墙绕过威胁的新方法

获取原文

摘要

Software-Defined Networking (SDN) is an innovational network architecture introduced a couple of years ago. It gives network administrators the ability to directly control the whole network by programming on a centralized controller, without manually configure each device. However, new security challenges come out with SDN development. One significant challenge is to design a secure firewall specifically designed for SDN, since the traditional firewall could be easily bypassed in SDN. To detect and prevent this bypass threat, we propose a novel detection method by modeling the network to a directed graph with two significant features. Then, we implement our method and conduct experiments. The result of experiments show that our method can actively and accurately detect bypass threats for OpenFlow networks.
机译:软件定义网络(SDN)是几年前推出的创新网络体系结构。它使网络管理员可以通过在中央控制器上进行编程来直接控制整个网络,而无需手动配置每个设备。但是,SDN开发带来了新的安全挑战。一个重大挑战是设计一种专为SDN设计的安全防火墙,因为传统防火墙很容易在SDN中绕开。为了检测和预防这种绕过威胁,我们通过将网络建模为具有两个重要特征的有向图来提出一种新颖的检测方法。然后,我们实施我们的方法并进行实验。实验结果表明,该方法可以主动,准确地检测出OpenFlow网络的旁路威胁。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号