As the prelude of network attack , network sniffering is a big threat to the network security. Based on the research achievement of moving target defence, a mechanism or strategy of IP address muta- tion in transmitting process is proposed, thus to enhance immunity of the network to sniffering. The main i- dea of this mechanism is that under the frame of SDN network, the controller by using 0penFlow protocol, writes different flow-tables to switch on the route and realizes IP mutation. Simulation results indicate that the IP mutation may be achieved at a comparatively low network overhead while a better network defense capability to the network sniffer for the network obtained.
Communications Technology