期刊文献+

A Flow-Based Authentication Handover Mechanism for Multi-Domain SDN Mobility Environment 被引量:1

A Flow-Based Authentication Handover Mechanism for Multi-Domain SDN Mobility Environment
下载PDF
导出
摘要 The long authentication handover delay is the greatest challenge in multi-domain SDN environment. In order to solve this problem, an authentication handover mechanism under multi-SDN domain(AHMMD) is proposed in this paper. In AHMMD, firstly, when the mobility entity accesses the network for the first time, its identity and service attributes are authenticated by the flow authentication protocol, which is designed based on the asymmetric encryption key; secondly, when the mobility entity moves to the neighbor domain, the authentication information will be delivered from the current controller to the neighborhood controller through a security communication channel. In order to promote the efficiency, a handover time prediction algorithm is adopted in AHMMD. Experimental results based on our AHMMD prototype have shown that the handover delay decreases by 50% while the handover cost decreases by 60%. The long authentication handover delay is the greatest challenge in multi-domain SDN environment. In order to solve this problem, an authentication handover mechanism under multi-SDN domain(AHMMD) is proposed in this paper. In AHMMD, firstly, when the mobility entity accesses the network for the first time, its identity and service attributes are authenticated by the flow authentication protocol, which is designed based on the asymmetric encryption key; secondly, when the mobility entity moves to the neighbor domain, the authentication information will be delivered from the current controller to the neighborhood controller through a security communication channel. In order to promote the efficiency, a handover time prediction algorithm is adopted in AHMMD. Experimental results based on our AHMMD prototype have shown that the handover delay decreases by 50% while the handover cost decreases by 60%.
出处 《China Communications》 SCIE CSCD 2017年第9期127-143,共17页 中国通信(英文版)
基金 supported in part by the National Natural Science Foundation of China under Grant No.61402521 Jiangsu Province Natural Science Foundation of China under Grant No.BK20140068
关键词 SDN AUTHENTICATION PROTOCOL prediction MOBILITY SDN authentication protocol prediction mobility
  • 相关文献

参考文献1

二级参考文献5

  • 1Nick McKeown,Tom Anderson,Hari Balakrishnan,Guru Parulkar,Larry Peterson,Jennifer Rexford,Scott Shenker,Jonathan Turner.OpenFlow[J]. ACM SIGCOMM Computer Communication Review . 2008 (2)
  • 2Sandhu RS,Coyne EJ,Feinstein HL,et al.Role-based access control models. IEEE Computer . 1996
  • 3Martin Casado,Michael J. Freedman,Justin Pettit,Jianying Luo,Nick McKeown,Scott Shenker.??Ethane(J)ACM SIGCOMM Computer Communication Review . 2007 (4)
  • 4David Mazières,Michael Kaminsky,M. Frans Kaashoek,Emmett Witchel.??Separating key management from file system security(J)ACM SIGOPS Operating Systems Review . 1999 (5)
  • 5CHAKRABORTY S,RAY I.Trust BAC-integrating trust relationships into the RBAC model for access control in open system. Proceedings of the 11th ACM symposium on Access control models and technologies . 2006

共引文献3

同被引文献2

引证文献1

二级引证文献3

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部