Detection and mitigation of security attacks using real time SDN analytics

S. Veena, R. Manju
{"title":"Detection and mitigation of security attacks using real time SDN analytics","authors":"S. Veena, R. Manju","doi":"10.1109/ICECA.2017.8212770","DOIUrl":null,"url":null,"abstract":"Software Defined Network (SDN) is a proposal to networking world for global administration and management of network services. It also provides an abstraction of networking elements. Most of the security innovations in SDN are bound to an OpenFlow security framework which creates and implement security policies while detecting malicious traffic, that too in a flexible way. Existing methodologies convert policies into human readable form, which reduces the complexity. The proposed system considers detection and mitigation of attacks in single domain topology. The attacks will be the handled at the processing units and it creates on-demand policies to mitigate the attacks with the aid of real time SDN analytics. Once an attack is detected by the processing unit, mitigation can be performed by the system automatically. The system also considers how the above approach can be used in an inter-domain SDN.","PeriodicalId":222768,"journal":{"name":"2017 International conference of Electronics, Communication and Aerospace Technology (ICECA)","volume":"4 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2017-04-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"5","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2017 International conference of Electronics, Communication and Aerospace Technology (ICECA)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICECA.2017.8212770","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 5

Abstract

Software Defined Network (SDN) is a proposal to networking world for global administration and management of network services. It also provides an abstraction of networking elements. Most of the security innovations in SDN are bound to an OpenFlow security framework which creates and implement security policies while detecting malicious traffic, that too in a flexible way. Existing methodologies convert policies into human readable form, which reduces the complexity. The proposed system considers detection and mitigation of attacks in single domain topology. The attacks will be the handled at the processing units and it creates on-demand policies to mitigate the attacks with the aid of real time SDN analytics. Once an attack is detected by the processing unit, mitigation can be performed by the system automatically. The system also considers how the above approach can be used in an inter-domain SDN.
使用实时SDN分析检测和缓解安全攻击
软件定义网络(SDN)是针对网络服务的全球管理和管理而提出的一种网络方案。它还提供了网络元素的抽象。SDN中的大多数安全创新都与OpenFlow安全框架绑定在一起,该框架在检测恶意流量的同时创建并实施安全策略,这也是一种灵活的方式。现有的方法将策略转换为人类可读的形式,从而降低了复杂性。该系统考虑了单域拓扑下的攻击检测和缓解问题。攻击将在处理单元处理,它创建随需应变的策略,以帮助实时SDN分析减轻攻击。一旦处理单元检测到攻击,系统就可以自动执行缓解。该系统还考虑了如何在域间SDN中使用上述方法。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信