SDN-based hybrid honeypot for attack capture

被引:0
|
作者
Wang, He [1 ,2 ]
Wu, Bin [2 ,3 ]
机构
[1] Beijing Univ Posts & Telecommun, Sch Comp Sci, Beijing, Peoples R China
[2] Beijing Univ Posts & Telecommun, Natl Disaster Recovery Technol Engn Lab, Beijing, Peoples R China
[3] Beijing Univ Posts & Telecommun, Sch Cyberspace Secur, Beijing, Peoples R China
关键词
CyberSecurity; Honeypot; SDN; Traffic migration; Topology simulation;
D O I
10.1109/itnec.2019.8729425
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Honeypots have become an important tool for capturing attacks. Hybrid honeypots, including the front end and the back end, are widely used in research because of the scalability of the front end and the high interactivity of the back end. However, traditional hybrid honeypots have some problems that the flow control is difficult and topology simulation is not realistic. This paper proposes a new architecture based on SDN applied to the hybrid honeypot system for network topology simulation and attack traffic migration. Our system uses the good expansibility and controllability of the SDN controller to simulate a large and realistic network to attract attackers and redirect high-level attacks to a high-interaction honeypot for attack capture and further analysis. It improves the deficiencies in the network spoofing technology and flow control technology in the traditional honeynet. Finally, we set up the experimental environment on the mininet and verified the mechanism. The test results show that the system is more intelligent and the traffic migration is more stealthy.
引用
收藏
页码:1602 / 1606
页数:5
相关论文
共 50 条
  • [21] SDN-Based Private Interconnection
    Dolev, Shlomi
    Tzur-David, Shimrit
    2014 IEEE 13TH INTERNATIONAL SYMPOSIUM ON NETWORK COMPUTING AND APPLICATIONS (NCA 2014), 2014, : 129 - 136
  • [22] An SDN-based MTD model
    Yang, Yubin
    Cheng, Liming
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2019, 31 (21):
  • [23] An SDN-based Hybrid Strategy for Load Balancing in Data Center Networks
    Liu, Lu
    Jiang, Yong
    Shen, Gengbiao
    Li, Qing
    Lin, Dong
    Li, Li
    Wang, Yi
    2019 IEEE SYMPOSIUM ON COMPUTERS AND COMMUNICATIONS (ISCC), 2019, : 893 - 898
  • [24] SDN-based Security Mechanism
    Aneci, Mihai-Nicolae
    Gheorghe, Laura
    Carabas, Mihai
    Soriga, Stefan
    Somcsan, Raluca-Andrcca
    2015 14TH ROEDUNET INTERNATIONAL CONFERENCE - NETWORKING IN EDUCATION AND RESEARCH (ROEDUNET NER), 2015, : 12 - 17
  • [25] SDN-based Network Mobility
    Sornlertlamvanich, P.
    Ang-Chuan, T.
    Sae-Wong, S.
    Kamolphiwong, T.
    Kamolphiwong, S.
    2016 INTERNATIONAL SYMPOSIUM ON INTELLIGENT SIGNAL PROCESSING AND COMMUNICATION SYSTEMS (ISPACS), 2016, : 464 - 469
  • [26] A flexible SDN-based framework for slow-rate DDoS attack mitigation by reinforcement
    Yungaicela-Naula, Noe M.
    Vargas-Rosales, Cesar
    Perez-Diaz, Jesus Arturo
    Carrera, Diego Fernando
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2022, 205
  • [27] Improving Attack Graph Scalability for the Cloud Through SDN-Based Decomposition and Parallel Processing
    Mjihil, Oussama
    Huang, Dijiang
    Haqiq, Abdelkrim
    UBIQUITOUS NETWORKING, UNET 2017, 2017, 10542 : 193 - 205
  • [28] An Efficient SDN-Based DDoS Attack Detection and Rapid Response Platform in Vehicular Networks
    Yu, Yao
    Guo, Lei
    Liu, Ye
    Zheng, Jian
    Zong, Yue
    IEEE ACCESS, 2018, 6 : 44570 - 44579
  • [29] Physical Assessment of an SDN-Based Security Framework for DDoS Attack Mitigation: Introducing the SDN-SlowRate-DDoS Dataset
    Yungaicela-Naula, Noe M.
    Vargas-Rosales, Cesar
    Perez-Diaz, Jesus Arturo
    Jacob, Eduardo
    Martinez-Cagnazzo, Carlos
    IEEE ACCESS, 2023, 11 : 46820 - 46831
  • [30] A Novel SDN based Stealthy TCP Connection Handover Mechanism for Hybrid Honeypot Systems
    Fan, Wenjun
    Fernandez, David
    2017 IEEE CONFERENCE ON NETWORK SOFTWARIZATION (IEEE NETSOFT), 2017,