Software-Defined Network-Based Intrusion Detection System
2018
The traditional networks conflate control and data plane on a physical device, normally comprise of software and hardware. The new emerging technology software-defined networks (SDNs) detach control plane from the data plane. SDN control plane exits controller has ability to control the entire network which is a possible security concern as compared to traditional network with a distributed control plane. In software-defined network, malicious flow exploits vulnerability of the controller through SDN switches, which demands essential SDN-based security model. This paper introduces the SDN architecture with their threat vectors. We proposed the SDN-based intrusion detection system (IDS) which identifies malicious behaviors or attacks and reports to network administrators as intrusion events.
Keywords:
- Correction
- Source
- Cite
- Save
- Machine Reading By IdeaReader
7
References
2
Citations
NaN
KQI