SDN-based hybrid honeypot for attack capture

被引:0
|
作者
Wang, He [1 ,2 ]
Wu, Bin [2 ,3 ]
机构
[1] Beijing Univ Posts & Telecommun, Sch Comp Sci, Beijing, Peoples R China
[2] Beijing Univ Posts & Telecommun, Natl Disaster Recovery Technol Engn Lab, Beijing, Peoples R China
[3] Beijing Univ Posts & Telecommun, Sch Cyberspace Secur, Beijing, Peoples R China
关键词
CyberSecurity; Honeypot; SDN; Traffic migration; Topology simulation;
D O I
10.1109/itnec.2019.8729425
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Honeypots have become an important tool for capturing attacks. Hybrid honeypots, including the front end and the back end, are widely used in research because of the scalability of the front end and the high interactivity of the back end. However, traditional hybrid honeypots have some problems that the flow control is difficult and topology simulation is not realistic. This paper proposes a new architecture based on SDN applied to the hybrid honeypot system for network topology simulation and attack traffic migration. Our system uses the good expansibility and controllability of the SDN controller to simulate a large and realistic network to attract attackers and redirect high-level attacks to a high-interaction honeypot for attack capture and further analysis. It improves the deficiencies in the network spoofing technology and flow control technology in the traditional honeynet. Finally, we set up the experimental environment on the mininet and verified the mechanism. The test results show that the system is more intelligent and the traffic migration is more stealthy.
引用
收藏
页码:1602 / 1606
页数:5
相关论文
共 50 条
  • [41] SDN-based Distributed Mobility Management
    Yang, Hyunsik
    Kim, Younghan
    2016 INTERNATIONAL CONFERENCE ON INFORMATION NETWORKING (ICOIN), 2016, : 337 - 342
  • [42] SDN-Based Cloud Computing Networking
    Azodolmolky, Siamak
    Wieder, Philipp
    Yahyapour, Ramin
    2013 15TH INTERNATIONAL CONFERENCE ON TRANSPARENT OPTICAL NETWORKS (ICTON 2013), 2013,
  • [43] SDN-based Stateful Firewall for Cloud
    Li, Jian
    Jiang, Hao
    Jiang, Wei
    Wu, Jing
    Du, Wen
    2020 IEEE 6TH INT CONFERENCE ON BIG DATA SECURITY ON CLOUD (BIGDATASECURITY) / 6TH IEEE INT CONFERENCE ON HIGH PERFORMANCE AND SMART COMPUTING, (HPSC) / 5TH IEEE INT CONFERENCE ON INTELLIGENT DATA AND SECURITY (IDS), 2020, : 157 - 161
  • [44] SDN-Based Secure Architecture for IoT
    Mishra, Shailendra
    INTERNATIONAL JOURNAL OF KNOWLEDGE AND SYSTEMS SCIENCE, 2020, 11 (04) : 1 - 16
  • [45] Evaluation of an SDN-based Microservice Architecture
    Holscher, Anton
    Asplund, Mikael
    Boeira, Felipe
    PROCEEDINGS OF THE 2022 IEEE 8TH INTERNATIONAL CONFERENCE ON NETWORK SOFTWARIZATION (NETSOFT 2022): NETWORK SOFTWARIZATION COMING OF AGE: NEW CHALLENGES AND OPPORTUNITIES, 2022, : 151 - 156
  • [46] SDN-based Handover in Future WLAN
    Gilani, Syed Mushhad M.
    Jin, Wenqiang
    Hong, Tang
    Zhao, Guofeng
    Xu, Chuan
    INTERNATIONAL JOURNAL OF FUTURE GENERATION COMMUNICATION AND NETWORKING, 2016, 9 (12): : 139 - 153
  • [47] SDN-Based Active Content Networking
    Um, Tai-Won
    Lee, Gyu Myoung
    Kim, Jinsul
    INTERNATIONAL JOURNAL OF DISTRIBUTED SENSOR NETWORKS, 2016,
  • [48] SDN-based DDoS Attack Detection with Cross-Plane Collaboration and Lightweight Flow Monitoring
    Yang, Xiangrui
    Han, Biao
    Sun, Zhigang
    Huang, Jinfeng
    GLOBECOM 2017 - 2017 IEEE GLOBAL COMMUNICATIONS CONFERENCE, 2017,
  • [49] FlexProtect: A SDN-based DDoS Attack Protection Architecture for Multi-tenant Data Centers
    Chen, Ming-Hung
    Ciou, Jyun-Yan
    Chung, I-Hsin
    Chou, Cheng-Fu
    PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON HIGH PERFORMANCE COMPUTING IN ASIA-PACIFIC REGION (HPC ASIA 2018), 2018, : 202 - 209
  • [50] Challenges and Preparedness of SDN-based Firewalls
    Dixit, Vaibhav Hemant
    Kyung, Sukwha
    Zhao, Ziming
    Doupe, Adam
    Shoshitaishvili, Yan
    Ahn, Gail-Joon
    PROCEEDINGS OF THE 2018 ACM INTERNATIONAL WORKSHOP ON SECURITY IN SOFTWARE DEFINED NETWORKS & NETWORK FUNCTION VIRTUALIZATION (SDN-NFVSEC'18), 2018, : 33 - 38