An approach for detecting encrypted insider attacks on OpenFlow SDN Networks

被引:0
|
作者
Neu, Charles V. [1 ]
Zorzo, Avelino F. [2 ]
Orozco, Alex M. S. [3 ]
Michelin, Regio A. [4 ]
机构
[1] Univ Santa Cruz Sul UNISC, Santa Cruz Do Sul, Brazil
[2] Pontifical Univ Rio Grande Sul PUCRS, Porto Alegre, RS, Brazil
[3] Sul Rio Grandense Fed Inst IFSul, Pelotas, Brazil
[4] Fed Inst Rio Grande Sul IFRS, Rio Grande, RS, Brazil
关键词
Cryptography; encrypted attacks; insider attacks; SDN; security; network attack; IDS; OpenFlow; OpenDay-light;
D O I
暂无
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Data traffic on the Internet is growing continuously due to the high number of connected devices and increased number of applications and transactions performed online. To ensure information security, integrity and confidentiality, cryptography is applied over transmitted or stored data. Hence, even if an attacker capture data packets, its reading is hampered or not even possible. However, an attacker can also use cryptography to mask an attack in order to avoid detection, for example, by an Intrusion Detection System (IDS). Recent studies in network technologies introduced a new paradigm called Software Defined Networking (SDN). By decoupling data and control plans, the SDN architecture allows centralizing the network management, intelligence and control into a single point, called Controller. The OpenFlow protocol, widely adopted in SDN, provides specific messages to get statistical information of an OpenFlow switch. A Controller can request this information, which enables the development of new IDS models to detect encrypted attacks. In this work, we intend to identify encrypted insider attacks in SDN by developing a new IDS approach that can detect encrypted attacks.
引用
收藏
页码:210 / 215
页数:6
相关论文
共 50 条
  • [41] Mitigating HTTP GET Flooding Attacks in SDN Using NetFPGA-based OpenFlow Switch
    An Nguyen Viet
    Luan Phung Van
    Hoang-Anh Nguyen Minh
    Huy Duong Xuan
    Nam Pham Ngoc
    Thanh Nguyen Huu
    2017 14TH INTERNATIONAL CONFERENCE ON ELECTRICAL ENGINEERING/ELECTRONICS, COMPUTER, TELECOMMUNICATIONS AND INFORMATION TECHNOLOGY (ECTI-CON), 2017, : 660 - 663
  • [42] Multimedia Content Delivery in OpenFlow SDN: An Approach Based on a Multimedia Gateway
    Diorio, Rafael Fernando
    Timoteo, Varese Salvador
    2016 INTERNATIONAL CONFERENCE ON COMPUTATIONAL SCIENCE & COMPUTATIONAL INTELLIGENCE (CSCI), 2016, : 612 - 617
  • [43] A Software Approach for Mitigation of DoS Attacks on SDN's (Software-Defined Networks)
    Lotlikar, Trupti
    Shah, Deven
    SOFT COMPUTING IN DATA ANALYTICS, SCDA 2018, 2019, 758 : 333 - 342
  • [44] A Machine Learning Approach for Detecting Spoofing Attacks in Wireless Sensor Networks
    de Lima Pinto, Eliel Marlon
    Lachowski, Rosana
    Pellenz, Marcelo E.
    Penna, Manoel C.
    Souza, Richard D.
    PROCEEDINGS 2018 IEEE 32ND INTERNATIONAL CONFERENCE ON ADVANCED INFORMATION NETWORKING AND APPLICATIONS (AINA), 2018, : 752 - 758
  • [45] An approach to detecting distributed denial of service attacks in software defined networks
    Sangodoyin, Abimbola
    Modu, Babagana
    Awan, Irfan
    Disso, Jules Pagna
    2018 IEEE 6TH INTERNATIONAL CONFERENCE ON FUTURE INTERNET OF THINGS AND CLOUD (FICLOUD 2018), 2018, : 436 - 443
  • [46] Detecting Insider Attacks Using Non-negative Matrix Factorization
    Platos, Jan
    Snasel, Vaclav
    Kromer, Pavel
    Abraham, Ajith
    FIFTH INTERNATIONAL CONFERENCE ON INFORMATION ASSURANCE AND SECURITY, VOL 1, PROCEEDINGS, 2009, : 693 - +
  • [47] SDN and OpenFlow for Dynamic Flex-Grid Optical Access and Aggregation Networks
    Cvijetic, Neda
    Tanaka, Akihiro
    Ji, Philip N.
    Sethuraman, Karthik
    Murakami, Shuji
    Wang, Ting
    JOURNAL OF LIGHTWAVE TECHNOLOGY, 2014, 32 (04) : 864 - 870
  • [48] Host Discovery Solution: An Enhancement of Topology Discovery in OpenFlow based SDN Networks
    Manzanares-Lopez, Pilar
    Pedro Munoz-Gea, Juan
    Manuel Delicado-Martinez, Francisco
    Malgosa-Sanahuja, Josemaria
    Flores de la Cruz, Adrian
    DCNET: PROCEEDINGS OF THE 13TH INTERNATIONAL JOINT CONFERENCE ON E-BUSINESS AND TELECOMMUNICATIONS - VOL. 1, 2016, : 80 - 88
  • [49] Detecting Encrypted Traffic: A Machine Learning Approach
    Cha, Seunghun
    Kim, Hyoungshick
    INFORMATION SECURITY APPLICATIONS, WISA 2016, 2017, 10144 : 54 - 65
  • [50] A trust-aware openflow switching framework for software defined networks (SDN)
    Karmakar, Kallol Krishna
    Varadharajan, Vijay
    Hitchens, Michael
    Tupakula, Uday
    Sariputra, Prajna
    COMPUTER NETWORKS, 2023, 237