首页> 外文期刊>Electronics >Mitigating ARP Cache Poisoning Attack in Software-Defined Networking (SDN): A Survey
【24h】

Mitigating ARP Cache Poisoning Attack in Software-Defined Networking (SDN): A Survey

机译:缓解软件定义网络(SDN)中的ARP缓存中毒攻击:一项调查

获取原文
           

摘要

Address Resolution Protocol (ARP) is a widely used protocol that provides a mapping of Internet Protocol (IP) addresses to Media Access Control (MAC) addresses in local area networks. This protocol suffers from many spoofing attacks because of its stateless nature and lack of authentication. One such spoofing attack is the ARP Cache Poisoning attack, in which attackers poison the cache of hosts on the network by sending spoofed ARP requests and replies. Detection and mitigation of ARP Cache Poisoning attack is important as this attack can be used by attackers to further launch Denial of Service (DoS) and Man-In-The Middle (MITM) attacks. As with traditional networks, an ARP Cache Poisoning attack is also a serious concern in Software Defined Networking (SDN) and consequently, many solutions are proposed in the literature to mitigate this attack. In this paper, a detailed survey on various solutions to mitigate ARP Cache Poisoning attack in SDN is carried out. In this survey, various solutions are classified into three categories: Flow Graph based solutions; Traffic Patterns based solutions; IP-MAC Address Bindings based solutions. All these solutions are critically evaluated in terms of their working principles, advantages and shortcomings. Another important feature of this survey is to compare various solutions with respect to different performance metrics, e.g., attack detection time, ARP response time, calculation of delay at the Controller etc. In addition, future research directions are also presented in this survey that can be explored by other researchers to propose better solutions to mitigate the ARP Cache Poisoning attack in SDN.
机译:地址解析协议(ARP)是一种广泛使用的协议,它提供Internet协议(IP)地址到局域网中的媒体访问控制(MAC)地址的映射。该协议由于其无状态性质和缺乏身份验证,因此遭受了许多欺骗攻击。一种此类欺骗攻击是ARP缓存中毒攻击,攻击者通过发送欺骗的ARP请求和答复来毒害网络上主机的缓存。检测和缓解ARP缓存中毒攻击非常重要,因为攻击者可以使用此攻击来进一步发起拒绝服务(DoS)和中间人(MITM)攻击。与传统网络一样,ARP缓存中毒攻击也是软件定义网络(SDN)中的一个严重问题,因此,文献中提出了许多解决方案来减轻这种攻击。本文对减轻SDN中ARP缓存中毒攻击的各种解决方案进行了详细调查。在此调查中,各种解决方案分为三类:基于流程图的解决方案;基于流量模式的解决方案;基于IP-MAC地址绑定的解决方案。所有这些解决方案均会根据其工作原理,优势和缺点进行严格评估。该调查的另一个重要特征是针对不同的性能指标比较各种解决方案,例如攻击检测时间,ARP响应时间,控制器上的延迟计算等。此外,该调查还提出了未来的研究方向,可以其他研究人员正在探索以提出更好的解决方案,以减轻SDN中的ARP缓存中毒攻击。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号