Title | Secure analysis on entire software-defined network using coloring distribution model |
---|---|
ID_Doc | 41004 |
Authors | Zhao, XH; Wu, ZH; Song, XB; Wang, QX |
Title | Secure analysis on entire software-defined network using coloring distribution model |
Year | 2022 |
Published | Concurrency And Computation-Practice & Experience, 34, 14 |
Abstract | Software Definition Network (SDN) has three features as separation of control and forwarding, unified management of configuration, and dynamic programming, which have greatly improved flexibility of network deployment and dynamics of network management, as well as efficiency of network transmission. However, its security problem is quite outstanding. This paper proposes a new security defense method based on coloring distribution model, which aims at the shortcomings of the current research that does not change the weak security, certainty, statics, and isomorphism of SDN. Motivated by the idea of moving target defense, our method abstracts network topology of SDN using coloring theory and realizes diversified deployment of controllers and switches, thus improving the security of network itself without changing the structure of SDN. Simulation results show that our method can prevent denial of service (DOS) attacks against controllers and switches and at the same time effectively block the worm, which is one of the most threat of smart city, propagation via switches. |
No similar articles found.