SnortFlow: A OpenFlow-based Intrusion Prevention System in Cloud Environment

被引:73
|
作者
Xing, Tianyi [1 ]
Huang, Dijiang [1 ]
Xu, Le [1 ]
Chung, Chun-Jen [1 ]
Khatkar, Pankaj [1 ]
机构
[1] Arizona State Univ, Tempe, AZ 85287 USA
关键词
D O I
10.1109/GREE.2013.25
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Security has been one of the top concerns in clouds. It is challenging to construct a secure networking environment in clouds because the cloud is usually a hybrid networking system containing both physical and virtually overlaid networks. Intrusion Detection Systems (IDS) and Intrusion Prevention Systems (IPS) have been widely deployed to manipulate cloud security, with the latter providing additional prevention capabilities. This paper investigates into an OpenFlow and Snort based IPS called "SnortFlow", in which it enables the cloud system to detect intrusions and deploy countermeasures by reconfiguring the cloud networking system on-the-fly. The evaluation results demonstrate the feasibility of SnortFlow and provide the guidance for the future work.
引用
收藏
页码:89 / 92
页数:4
相关论文
共 50 条
  • [31] Interactive Monitoring, Visualization, and Configuration of OpenFlow-Based SDN
    Isolani, Pedro Heleno
    Wickboldt, Juliano Araujo
    Both, Cristiano Bonato
    Rochol, Juergen
    Granville, Lisandro Zambenedetti
    PROCEEDINGS OF THE 2015 IFIP/IEEE INTERNATIONAL SYMPOSIUM ON INTEGRATED NETWORK MANAGEMENT (IM), 2015, : 207 - 215
  • [32] Implications and Detection of DoS Attacks in OpenFlow-based Networks
    Hommes, Stefan
    State, Radu
    Engel, Thomas
    2014 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM 2014), 2014, : 537 - 543
  • [33] Generalizing virtual network topologies in OpenFlow-based networks
    Salvadori, Elio
    Corin, Roberto Doriguzzi
    Broglio, Attilio
    Gerola, Matteo
    2011 IEEE GLOBAL TELECOMMUNICATIONS CONFERENCE (GLOBECOM 2011), 2011,
  • [34] OpenFlow-Based Live Video Streaming with GENI Cinema
    Izard, Ryan
    Wang, Qing
    Kribbs, Benton
    Porter, Joseph
    Wang, Kuang-Ching
    Gupta, Shashank
    Prakash, Aditya
    Ramanathan, Parmesh
    2016 IEEE Conference on Computer Communications Workshops (INFOCOM WKSHPS), 2016,
  • [35] OpenFlow-based Network Management with Visualization of Managed Elements
    Malishevskiy, Anatoliy
    Gurkan, Deniz
    Dane, Levent
    Narisetty, RajaRevanth
    Narayan, Sandhya
    Bailey, Stuart
    2014 THIRD GENI RESEARCH AND EDUCATIONAL EXPERIMENT WORKSHOP (GREE), 2014, : 73 - +
  • [36] OpenFlow-based Load Balancing for Wireless Mesh Infrastructure
    Yang, Fan
    Gondi, Vamsi
    Hallstrom, Jason O.
    Wang, Kuang-Ching
    Eidson, Gene
    2014 IEEE 11TH CONSUMER COMMUNICATIONS AND NETWORKING CONFERENCE (CCNC), 2014,
  • [37] OpenFlow-Based Load Balancing in WLAN: Throughput Analysis
    Gilani, Syed Mushhad M.
    Heang, Heng Meng
    Hong, Tang
    Zhao, Guofeng
    Xu, Chuan
    COMMUNICATIONS, SIGNAL PROCESSING, AND SYSTEMS, 2018, 423 : 69 - 76
  • [38] HIDS: A host based intrusion detection system for cloud computing environment
    Deshpande P.
    Sharma S.C.
    Peddoju S.K.
    Junaid S.
    Deshpande, Prachi (deprachi3@gmail.com), 2018, Springer (09) : 567 - 576
  • [39] Securing Cloud Environment using a String based Intrusion Detection System
    Raj, R. Sundar
    Bhaskaran, V. Murali
    2017 4TH INTERNATIONAL CONFERENCE ON ADVANCED COMPUTING AND COMMUNICATION SYSTEMS (ICACCS), 2017,
  • [40] FCM–SVM based intrusion detection system for cloud computing environment
    Aws Naser Jaber
    Shafiq Ul Rehman
    Cluster Computing, 2020, 23 : 3221 - 3231