Skip to main navigation Skip to search Skip to main content

Attack Detection on the Software Defined Networking Switches

Udaya Tupakula, Vijay Varadharajan, Kallol Krishna Karmakar

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

8 Citations (Scopus)

Abstract

Software Defined Networking (SDN) is disruptive networking technology which adopts a centralised framework to facilitate fine-grained network management. However security in SDN is still in its infancy and there is need for significant work to deal with different attacks in SDN. In this paper we discuss some of the possible attacks on SDN switches and propose techniques for detecting the attacks on switches. We have developed a Switch Security Application (SSA)for SDN Controller which makes use of trusted computing technology and some additional components for detecting attacks on the switches. In particular TPM attestation is used to ensure that switches are in trusted state during boot time before configuring the flow rules on the switches. The additional components are used for storing and validating messages related to the flow rule configuration of the switches. The stored information is used for generating a trusted report on the expected flow rules in the switches and using this information for validating the flow rules that are actually enforced in the switches. If there is any variation to flow rules that are enforced in the switches compared to the expected flow rules by the SSA, then, the switch is considered to be under attack and an alert is raised to the SDN Administrator. The administrator can isolate the switch from network or make use of trusted report for restoring the flow rules in the switches. We will also present a prototype implementation of our technique.

Original languageEnglish
Title of host publicationProceedings of the 2020 IEEE Conference on Network Softwarization : NetSoft 2020 : Bridging the gap between AI and network softwarization, p. 262-266
Place of PublicationPiscataway, New Jersey, United States of America
PublisherIEEE
Pages262-266
ISBN (Print)9781728156842, 9781728156859
DOIs
Publication statusPublished - 31 Dec 2020
Event2020 6th IEEE Conference on Network Softwarization (NetSoft) - Virtual Conference, Ghent, Belgium
Duration: 29 Jun 20203 Jul 2020

Conference

Conference2020 6th IEEE Conference on Network Softwarization (NetSoft)
CityGhent, Belgium
Period29/06/203/07/20

Fingerprint

Dive into the research topics of 'Attack Detection on the Software Defined Networking Switches'. Together they form a unique fingerprint.

Cite this