An approach for detecting encrypted insider attacks on OpenFlow SDN Networks

被引:0
|
作者
Neu, Charles V. [1 ]
Zorzo, Avelino F. [2 ]
Orozco, Alex M. S. [3 ]
Michelin, Regio A. [4 ]
机构
[1] Univ Santa Cruz Sul UNISC, Santa Cruz Do Sul, Brazil
[2] Pontifical Univ Rio Grande Sul PUCRS, Porto Alegre, RS, Brazil
[3] Sul Rio Grandense Fed Inst IFSul, Pelotas, Brazil
[4] Fed Inst Rio Grande Sul IFRS, Rio Grande, RS, Brazil
关键词
Cryptography; encrypted attacks; insider attacks; SDN; security; network attack; IDS; OpenFlow; OpenDay-light;
D O I
暂无
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Data traffic on the Internet is growing continuously due to the high number of connected devices and increased number of applications and transactions performed online. To ensure information security, integrity and confidentiality, cryptography is applied over transmitted or stored data. Hence, even if an attacker capture data packets, its reading is hampered or not even possible. However, an attacker can also use cryptography to mask an attack in order to avoid detection, for example, by an Intrusion Detection System (IDS). Recent studies in network technologies introduced a new paradigm called Software Defined Networking (SDN). By decoupling data and control plans, the SDN architecture allows centralizing the network management, intelligence and control into a single point, called Controller. The OpenFlow protocol, widely adopted in SDN, provides specific messages to get statistical information of an OpenFlow switch. A Controller can request this information, which enables the development of new IDS models to detect encrypted attacks. In this work, we intend to identify encrypted insider attacks in SDN by developing a new IDS approach that can detect encrypted attacks.
引用
收藏
页码:210 / 215
页数:6
相关论文
共 50 条
  • [11] SDN and OpenFlow for Converged Access/Aggregation Networks
    Woesner, Hagen
    Fritzsche, Daniel
    2013 OPTICAL FIBER COMMUNICATION CONFERENCE AND EXPOSITION AND THE NATIONAL FIBER OPTIC ENGINEERS CONFERENCE (OFC/NFOEC), 2013,
  • [12] An optimisation framework for monitoring of SDN/OpenFlow networks
    Valdivieso Caraguay, Angel Leonardo
    Puente Fernandez, Jesus Antonio
    Garcia Villalba, Luis Javier
    INTERNATIONAL JOURNAL OF AD HOC AND UBIQUITOUS COMPUTING, 2017, 26 (04) : 263 - 273
  • [13] Detecting and mitigating DDoS attacks with moving target defense approach based on automated flow classification in SDN networks
    Ribeiro, Marcos Aurelio
    Fonseca, Mauro Sergio Pereira
    de Santi, Juliana
    COMPUTERS & SECURITY, 2023, 134
  • [14] Detecting Collaborative Insider Attacks in Information Systems
    Khanh Viet
    Panda, Brajendra
    Hu, Yi
    PROCEEDINGS 2012 IEEE INTERNATIONAL CONFERENCE ON SYSTEMS, MAN, AND CYBERNETICS (SMC), 2012, : 502 - 507
  • [15] Detecting and Preventing DDoS Attacks in SDN-Based Data Center Networks
    Lin, Po-Ching
    Hsu, Yu-Ting
    Hwang, Ren-Hung
    CLOUD COMPUTING AND SECURITY, PT II, 2017, 10603 : 50 - 61
  • [16] A critical review of OpenFlow/SDN-based networks
    de Almeida Amazonas, Jose Roberto
    Santos-Boada, German
    Sole-Pareta, Josep
    2014 16TH INTERNATIONAL CONFERENCE ON TRANSPARENT OPTICAL NETWORKS (ICTON), 2014,
  • [17] Cloud Orchestration with SDN/OpenFlow in Carrier Transport Networks
    Autenrieth, Achim
    Elbers, Joerg-Peter
    Kaczmarek, Pawel
    Kostecki, Pawel
    2013 15TH INTERNATIONAL CONFERENCE ON TRANSPARENT OPTICAL NETWORKS (ICTON 2013), 2013,
  • [18] Lightweight IPS for Port Scan in Openflow SDN networks
    Neu, Charles V.
    Tatsch, Cassio G.
    Lunardi, Roben C.
    Michelin, Regio A.
    Orozco, Alex M. S.
    Zorzo, Avelino F.
    NOMS 2018 - 2018 IEEE/IFIP NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM, 2018,
  • [19] Detecting insider attacks in medical cyber-physical networks based on behavioral profiling
    Meng, Weizhi
    Li, Wenjuan
    Wang, Yu
    Au, Man Ho
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2020, 108 : 1258 - 1266
  • [20] Countering crossfire DDoS attacks through moving target defense in SDN networks using OpenFlow traffic modification
    Hyder, Muhammad Faraz
    Fatima, Tasbiha
    Khan, Shariq Mahmood
    Arshad, Saadia
    TRANSACTIONS ON EMERGING TELECOMMUNICATIONS TECHNOLOGIES, 2023,