Enhancing security in Software-Defined Networks: An approach to efficient ARP spoofing attacks detection and mitigation

被引:2
|
作者
Hnamte, Vanlalruata [1 ]
Hussain, Jamal [1 ]
机构
[1] Mizoram Univ, Dept Math & Comp Sci, Aizawl 796004, Mizoram, India
来源
关键词
Software-Defined Networking; ARP spoofing; Security; Anomaly detection; Network resilience;
D O I
10.1016/j.teler.2024.100129
中图分类号
G25 [图书馆学、图书馆事业]; G35 [情报学、情报工作];
学科分类号
1205 ; 120501 ;
摘要
The proliferation of Software-Defined Networks (SDNs) has introduced unparalleled flexibility and efficiency to network management, but at the same time, it has introduced new challenges in securing network infrastructures. Among these challenges, Address Resolution Protocol (ARP) spoofing attacks remain a pervasive threat, compromising network integrity and data confidentiality. In this manuscript, we present an approach to ARP spoofing mitigation within SDNs, addressing the limitations of existing methodologies. Our proposed solution employs a multifaceted strategy that combines dynamic ARP cache management, real-time traffic analysis, and adaptive flow rule orchestration. Central to our approach is a dedicated device that continuously monitors the network topology and detects any deviations from established norms. Notably, our solution adapts seamlessly to networks of varying sizes, ensuring scalability and efficacy across diverse infrastructures. One of our key contributions is the integration of a deep learning-based Deep Neural Network (DNN) model to detect and mitigate ARP spoofing attacks. Leveraging a self-generated ARP spoofing dataset from SDN environments, our model demonstrates exceptional accuracy and adaptability, enhancing the network's capability to identify and counter such threats effectively. Our approach showcases exceptional reliability, achieving 100% accuracy rate in detection of ARP spoofing, which is crucial for sustaining network responsiveness.
引用
收藏
页数:19
相关论文
共 50 条
  • [21] ARP Poisoning attack Detection based on ARP Update state in Software-Defined Networks.
    Kim, Youngpin
    Ahn, Sungwon
    Nguyen Canh Thang
    Choi, Dongho
    Park, Minho
    33RD INTERNATIONAL CONFERENCE ON INFORMATION NETWORKING (ICOIN 2019), 2019, : 366 - 371
  • [22] Efficient Forwarding Anomaly Detection in Software-Defined Networks
    Li, Qi
    Liu, Yunpeng
    Liu, Zhuotao
    Zhang, Peng
    Pang, Chunhui
    IEEE TRANSACTIONS ON PARALLEL AND DISTRIBUTED SYSTEMS, 2021, 32 (11) : 2676 - 2690
  • [23] Detection and Mitigation of DDoS Attacks Using Conditional Entropy in Software-defined Networking
    Xuanyuan, Ming
    Ramsurrun, Visham
    Seeam, Amar
    2019 11TH INTERNATIONAL CONFERENCE ON ADVANCED COMPUTING (ICOAC 2019), 2019, : 66 - 71
  • [24] Software-Defined Mobile Networks Security
    Min Chen
    Yongfeng Qian
    Shiwen Mao
    Wan Tang
    Ximin Yang
    Mobile Networks and Applications, 2016, 21 : 729 - 743
  • [25] Security Evaluation in Software-Defined Networks
    Ivkic, Igor
    Thiede, Dominik
    Race, Nicholas
    Broadbent, Matthew
    Gouglidis, Antonios
    CLOUD COMPUTING AND SERVICES SCIENCE, CLOSER 2022, CLOSER 2023, 2024, 1845 : 66 - 91
  • [26] Software-Defined Mobile Networks Security
    Chen, Min
    Qian, Yongfeng
    Mao, Shiwen
    Tang, Wan
    Yang, Ximin
    MOBILE NETWORKS & APPLICATIONS, 2016, 21 (05): : 729 - 743
  • [27] Collaborative Security Attack Detection in Software-Defined Vehicular Networks
    Kim, Myeongsu
    Jang, Insun
    Choo, Sukjin
    Koo, Jungwoo
    Pack, Sangheon
    2017 19TH ASIA-PACIFIC NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM (APNOMS 2017): MANAGING A WORLD OF THINGS, 2017, : 19 - 24
  • [28] A General Approach to Conflict Detection in Software-Defined Networks
    Tran C.N.
    Danciu V.
    SN Computer Science, 2020, 1 (1)
  • [29] Distributed Security Network Functions against Botnet Attacks in Software-defined Networks
    Park, Younghee
    Kengalahalli, Nikhil Vijayakumar
    Chang, Sang-Yoon
    2018 IEEE CONFERENCE ON NETWORK FUNCTION VIRTUALIZATION AND SOFTWARE DEFINED NETWORKS (NFV-SDN), 2018,
  • [30] Detection and defense against network isolation attacks in software-defined networks
    Yu, Zhipeng
    Zhu, Hui
    Xiao, Rui
    Song, Chao
    Dong, Jian
    Li, Hui
    TRANSACTIONS ON EMERGING TELECOMMUNICATIONS TECHNOLOGIES, 2021, 32 (05)