首页> 外文会议>IEEE International Conference on Cloud Computing >Time Inference Attacks on Software Defined Networks: Challenges and Countermeasures
【24h】

Time Inference Attacks on Software Defined Networks: Challenges and Countermeasures

机译:对软件定义网络的时间推断攻击:挑战和对策

获取原文

摘要

Through time inference attacks, adversaries fingerprint SDN controllers, estimate switches flow-table size, and perform flow state reconnaissance. In fact, timing a SDN and analyzing its results can expose information which later empowers SDN resource-consumption or saturation attacks. In the real world, however, launching such attacks is not easy. This is due to some challenges attackers may encounter while attacking an actual SDN deployment. These challenges, which are not addressed adequately in the related literature, are investigated in this paper. Accordingly, practical solutions to mitigate such attacks are also proposed. Discussed challenges are clarified by means of conducting extensive experiments on an actual cloud data center testbed. Moreover, mitigation schemes have been implemented and examined in details. Experimental results show that proposed countermeasures effectively block time inference attacks.
机译:通过时间推断攻击,对手可以对SDN控制器进行指纹识别,估计交换机的流表大小,并执行流状态侦察。实际上,对SDN计时并分析其结果可能会暴露信息,这些信息随后会激活SDN资源消耗或饱和攻击。但是,在现实世界中,发起此类攻击并不容易。这是由于攻击者在攻击实际的SDN部署时可能会遇到一些挑战。本文对这些挑战进行了调查,而这些挑战在相关文献中并未得到充分解决。因此,还提出了减轻这种攻击的实际解决方案。通过在实际的云数据中心测试平台上进行广泛的实验,澄清了所讨论的挑战。此外,缓解方案已得到实施和详细审查。实验结果表明,所提出的对策可以有效地阻止时间推断攻击。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号