Software-Defined Network-Based Intrusion Detection System

2018 
The traditional networks conflate control and data plane on a physical device, normally comprise of software and hardware. The new emerging technology software-defined networks (SDNs) detach control plane from the data plane. SDN control plane exits controller has ability to control the entire network which is a possible security concern as compared to traditional network with a distributed control plane. In software-defined network, malicious flow exploits vulnerability of the controller through SDN switches, which demands essential SDN-based security model. This paper introduces the SDN architecture with their threat vectors. We proposed the SDN-based intrusion detection system (IDS) which identifies malicious behaviors or attacks and reports to network administrators as intrusion events.
    • Correction
    • Source
    • Cite
    • Save
    • Machine Reading By IdeaReader
    7
    References
    2
    Citations
    NaN
    KQI
    []