Distributed controllers multi-granularity security communication mechanism for software-defined networking

被引:6
|
作者
Shang, Fengjun [1 ]
Li, Yan [1 ]
Fu, Qiang [1 ]
Wang, Wenkai [1 ]
Feng, Jiangfan [1 ]
He, Li [1 ]
机构
[1] Chongqing Univ Posts & Telecommun, Coll Comp Sci & Technol, Chongqing 400065, Peoples R China
基金
中国国家自然科学基金;
关键词
Software defined network; Security architecture; Secure communication; SDN;
D O I
10.1016/j.compeleceng.2017.07.003
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
For the multi-domain software defined network (SDN), different controllers are not able to directly communicate with each other due to the different distances among control planes. Therefore, the exchange of information among different domains is generally unsecure. The main contribution of this paper can be summarized into two parts. Firstly, architecture of multi-granularity security controller is proposed, which includes a basic control module and a multi-granularity security customized module. Secondly, a secure communication mechanism is proposed for distributed controller, where a prototype of this mechanism is implemented. In particular, this mechanism can make use of the border switch as inter domain agents, where special packets are used by the controller to send messages to the secure tunnel. A two-step authentication of the controller can be provided by inter-domain agents and digital certificates. The experimental results demonstrate that the distributed controller secure communication mechanism is capable of effectively improving the security of SDN domain. (C) 2017 Elsevier Ltd. All rights reserved.
引用
收藏
页码:388 / 406
页数:19
相关论文
共 50 条
  • [11] Reducing Inconsistency between Software-Defined Networking Controllers
    Tsukuda, Yusaku
    Kosugi, Masaru
    Shiomoto, Kohei
    Morita, Tatsuya
    Hayashi, Tsunemasa
    PROCEEDINGS OF THE 2019 IEEE CONFERENCE ON NETWORK SOFTWARIZATION (NETSOFT 2019), 2019, : 301 - 305
  • [12] Comparison and Performance Evaluation of Software-Defined Networking Controllers
    Bhardwaj, Shanu
    Panda, S. N.
    Muskaan
    Datta, Priyanka
    2020 INTERNATIONAL CONFERENCE ON EMERGING SMART COMPUTING AND INFORMATICS (ESCI), 2020, : 276 - 281
  • [13] SOFTWARE-DEFINED NETWORKING SECURITY: PROS AND CONS
    Dabbagh, Mehiar
    Hamdaoui, Bechir
    Guizani, Mohsen
    Rayes, Ammar
    IEEE COMMUNICATIONS MAGAZINE, 2015, 53 : 73 - 79
  • [14] Security Challenges and Opportunities of Software-Defined Networking
    Dacier, Marc C.
    Koenig, Hartmut
    Cwalinski, Radoslaw
    Kargl, Frank
    Dietrich, Sven
    IEEE SECURITY & PRIVACY, 2017, 15 (02) : 96 - 100
  • [15] Security in Software-Defined Networking: Threats and Countermeasures
    Shu, Zhaogang
    Wan, Jiafu
    Li, Di
    Lin, Jiaxiang
    Vasilakos, Athanasios V.
    Imran, Muhammad
    MOBILE NETWORKS & APPLICATIONS, 2016, 21 (05): : 764 - 776
  • [16] Software-Defined Networking (SDN): the security review
    Hussein, A.
    Chadad, Louma
    Adalian, Nareg
    Chehab, Ali
    Elhajj, Imad H.
    Kayssi, Ayman
    Journal of Cyber Security Technology, 2020, 4 (01) : 1 - 66
  • [17] Security in Software-Defined Networking: Threats and Countermeasures
    Zhaogang Shu
    Jiafu Wan
    Di Li
    Jiaxiang Lin
    Athanasios V. Vasilakos
    Muhammad Imran
    Mobile Networks and Applications, 2016, 21 : 764 - 776
  • [18] A Software-Defined Networking Security Controller Architecture
    Shang, Fengjun
    Fu, Qiang
    PROCEEDINGS OF THE 2016 4TH INTERNATIONAL CONFERENCE ON MACHINERY, MATERIALS AND COMPUTING TECHNOLOGY, 2016, 60 : 229 - 234
  • [19] The research on a novel structure of two-layer distributed controllers in software-defined networking
    Dong, Ligang
    Yang, Dandan
    Guo, Kaiqiang
    Fei, Shuocheng
    Li, Ying
    Wang, Weiming
    INTERNATIONAL JOURNAL OF NETWORK MANAGEMENT, 2018, 28 (03)
  • [20] Securing industrial communication with software-defined networking
    Savaliya, Abhishek
    Jhaveri, Rutvij H.
    Xin, Qin
    Alqithami, Saad
    Ramani, Sagar
    Ahanger, Tariq Ahamed
    MATHEMATICAL BIOSCIENCES AND ENGINEERING, 2021, 18 (06) : 8298 - 8313