期刊文献+

软件定义网络中的多流时间式隐信道设计 被引量:1

Design of Multiple-flow Timing Channel in Software-defined Networking Virtual Environment
下载PDF
导出
摘要 软件定义网络(Software-defined Networking,SDN)是实现传统网络体系中的应用层、控制层和数据层解耦的一种新型网络架构。本文研究该网络环境下的隐蔽通信问题,基于OpenFlow控制器与交换机之间的交互特性,提出一种基于响应报文次序组合调制的多流时间式隐信道设计方案,该方案利用控制器与多交换机之间的链路层发现协议(Link Layer Discovery Protocol,LLDP)响应报文到达的次序分布构建组合累计分布函数并调制秘密信息。仿真实验结果表明所提方案具有较好的隐蔽性和鲁棒性。 Software-defined networks(SDN),different from traditional network,is a new network architecture with the separation of application layer,control layer and data layer. In this paper,covert communication in SDN is studied,a multiple-flow timing channel scheme is proposed based on the interaction characteristic between Open Flow controllers and switches,which utilizes the arriving time of reply packets in link layer discovery protocol to transmit secret messages. Simulation results show that the proposed scheme can achieve well covertness and robustness.
出处 《计算机与现代化》 2017年第4期94-98,104,共6页 Computer and Modernization
基金 国家自然科学基金资助项目(61472188 61602247) 江苏省自然科学基金资助项目(BK20150472 BK20160840) 国家科技支撑计划项目(2014BAH41B01) 中央高校基本科研业务费专项资金资助项目(30920140121006 30915012208) CCF-启明星辰"鸿雁"科研基金资助项目
关键词 软件定义网络 隐蔽通信 时间式隐信道 链路层发现协议 software-defined networks covert communication timing channels link layer discovery protocol
  • 相关文献

参考文献1

二级参考文献53

  • 1Open Networking Foundation. Software-defined networking: the new norm for networks [ R/OL]. [ 2013-11 - 16 ]. https ://www. opennet- working, org/images/stories/downloads/sdnresources/white-papers/ wpsdn-newnorm, pdf.
  • 2ZARGAR S T, JOSHI J, TIPPER D. A survey of defense mechanisms against distributed denial of service ( DDoS ) flooding attacks [ J ]. IEEE Communications Surveys & Tutorials,2013,15 (4) :2046- 2069.
  • 3ZHOU Wan-lei. Keynote Ⅲ: detection and traceback of DDoS attacks [C]//Proc of the 8th IEEE International Conference on Computer and Information Technology. [ S. l. ] :IEEE Press,2008.
  • 4Real time threat mitigation through intelligent network quarantine [ EB/OL ]. [ 2013- 11- 18 ]. http://www, opennetsummit, org/ar- chives/apr12/site/pdf/varmour, pdf.
  • 5PORRAS P, SHIN S, YEGNESWARAN V, et al. A security en- forcement kernel for OpenFlow networks [ C ]//Proc of the 1 st Work- shop on Hot Topics in Software Defined Networks. New York : ACM Press,2012 : 121 - 126.
  • 6ANTONATOS S, AKRITIDIS P, MARKATOS E P, et al. Defending against hitlist worms using network address space randomization [ J ]. Computer Networks ,2007,51 ( 12 ) :3471-3490.
  • 7JAFARIAN H J, AI-S E, DUAN Qi. OpenFlow random host muta-tlon : transparent moving target defense using software defined networ- king[C]//Proc of the 1st Workshop on Hot Topics in Software De- fined Networks. New York :ACM Press ,2012 : 127-132.
  • 8KUMAR S, SEHGAL R, BHATIA J S. Hybrid honeypot framework for malware collection and analysis [ C ]//Proe of the 7th International Conference on Industrial and Information Systems. [ S. 1. ] : IEEE Press.2012 : 1-5.
  • 9YEGANEH S H, GANJALI Y. Kandoo: a framework for efficient and scalable offloading of control applications [ C ]//Proc of the 1 st Work- shop on Hot Topics in Software Defined Networks. New York:ACM Press,2012 : 19-24.
  • 10BEHESHTI N, ZHANG Ying. Fast failover for control traffic in soft- ware-defined networks [ C ]//Proc of IEEE Global Communication Conference. [ S. 1. ] : IEEE Press,2012:2665-2670.

共引文献25

同被引文献4

引证文献1

二级引证文献1

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部