SDN-based hybrid honeypot for attack capture

被引:0
|
作者
Wang, He [1 ,2 ]
Wu, Bin [2 ,3 ]
机构
[1] Beijing Univ Posts & Telecommun, Sch Comp Sci, Beijing, Peoples R China
[2] Beijing Univ Posts & Telecommun, Natl Disaster Recovery Technol Engn Lab, Beijing, Peoples R China
[3] Beijing Univ Posts & Telecommun, Sch Cyberspace Secur, Beijing, Peoples R China
关键词
CyberSecurity; Honeypot; SDN; Traffic migration; Topology simulation;
D O I
10.1109/itnec.2019.8729425
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Honeypots have become an important tool for capturing attacks. Hybrid honeypots, including the front end and the back end, are widely used in research because of the scalability of the front end and the high interactivity of the back end. However, traditional hybrid honeypots have some problems that the flow control is difficult and topology simulation is not realistic. This paper proposes a new architecture based on SDN applied to the hybrid honeypot system for network topology simulation and attack traffic migration. Our system uses the good expansibility and controllability of the SDN controller to simulate a large and realistic network to attract attackers and redirect high-level attacks to a high-interaction honeypot for attack capture and further analysis. It improves the deficiencies in the network spoofing technology and flow control technology in the traditional honeynet. Finally, we set up the experimental environment on the mininet and verified the mechanism. The test results show that the system is more intelligent and the traffic migration is more stealthy.
引用
收藏
页码:1602 / 1606
页数:5
相关论文
共 50 条
  • [1] Minimizing false positive rate for DoS attack detection: A hybrid SDN-based approach
    Latah, Majd
    Toker, Levent
    ICT EXPRESS, 2020, 6 (02): : 125 - 127
  • [2] A Research Review on SDN-Based DDOS Attack Detection
    Zhu, Weidong
    Yi, Xiujuan
    PROCEEDINGS OF THE 2017 INTERNATIONAL CONFERENCE ON MANAGEMENT SCIENCE AND MANAGEMENT INNOVATION (MSMI 2017), 2017, 31 : 145 - 149
  • [3] SDN-based ARP Attack Detection for Cloud Centers
    Ma, Huan
    Ding, Hao
    Yang, Yang
    Mi, Zhenqiang
    Zhang, Miao
    IEEE 12TH INT CONF UBIQUITOUS INTELLIGENCE & COMP/IEEE 12TH INT CONF ADV & TRUSTED COMP/IEEE 15TH INT CONF SCALABLE COMP & COMMUN/IEEE INT CONF CLOUD & BIG DATA COMP/IEEE INT CONF INTERNET PEOPLE AND ASSOCIATED SYMPOSIA/WORKSHOPS, 2015, : 1049 - 1054
  • [4] A SDN-Based Hybrid Electrical Optical Architecture
    Chen, Kexian
    Yu, Xiaoshan
    Lu, Yunfeng
    Wang, Jiahui
    2018 IEEE 18TH INTERNATIONAL CONFERENCE ON COMMUNICATION TECHNOLOGY (ICCT), 2018, : 242 - 245
  • [5] SDN-based Path Hopping Communication Against Eavesdropping Attack
    Zhang, Chuanhao
    Bu, Youjun
    Zhao, Zheng
    OPTICAL COMMUNICATION AND OPTICAL FIBER SENSORS AND OPTICAL MEMORIES FOR BIG DATA STORAGE, 2016, 10158
  • [6] SDN-based Attack Detection in Wireless Local Area Networks
    Cwalinski, Radoslaw
    Koenig, Hartmut
    2018 4TH IEEE CONFERENCE ON NETWORK SOFTWARIZATION AND WORKSHOPS (NETSOFT), 2018, : 207 - 211
  • [7] SDN-Based Double Hopping Communication against Sniffer Attack
    Zhao, Zheng
    Gong, Daofu
    Lu, Bin
    Liu, Fenlin
    Zhang, Chuanhao
    MATHEMATICAL PROBLEMS IN ENGINEERING, 2016, 2016
  • [8] NFV/SDN-based vEPC Solution in Hybrid Clouds
    Hawilo, Hassan
    Liao, Lingxia
    Shami, Abdallah
    Leung, Victor C. M.
    2018 IEEE MIDDLE EAST AND NORTH AFRICA COMMUNICATIONS CONFERENCE (MENACOMM), 2018, : 235 - 240
  • [9] Control Channel Denial-of-Service Attack in SDN-Based Networks
    Sriskandarajah, Shriparen
    McKague, Matthew
    Foo, Ernest
    Ragel, Roshan G.
    Karunarathna, Suneth Namal
    Jadidi, Zahra
    MERCON 2020: 6TH INTERNATIONAL MULTIDISCIPLINARY MORATUWA ENGINEERING RESEARCH CONFERENCE (MERCON), 2020, : 325 - 330
  • [10] XGBoost Classifier for DDoS Attack Detection and Analysis in SDN-based Cloud
    Chen, Zhuo
    Jiang, Fu
    Cheng, Yijun
    Gu, Xin
    Liu, Weirong
    Peng, Jun
    2018 IEEE INTERNATIONAL CONFERENCE ON BIG DATA AND SMART COMPUTING (BIGCOMP), 2018, : 251 - 256