期刊文献+

应对DDoS攻击的SDN网络安全特性研究 被引量:10

Research on Security Features of SDN Against DDoS Attacks
下载PDF
导出
摘要 软件定义网络将传统封闭的网络体系解耦为数据平面、控制平面和应用平面,实现网络的集中控制与管理,其突出特点是开放性和可编程性。本文重点研究SDN网络的安全特性,首先讨论SDN的发展现状,并展示如何通过利用SDN功能来解决网络安全中的一些长期问题。然后,描述了SDN面临的新的重要安全威胁-DDo S攻击,并讨论可用于预防和减轻此类威胁的可能技术。 The software definition network decouples the traditional network system into data plane, control plane and application plane, and realizes the centralized control and management of the network. Its outstanding features are openness and programmability. This article focuses on the security aspects of SDN. We first discuss the development of SDN and show how to use SDN to solve some of the long-term problems in network security. Then we describe the new security threats facing SDN-DDoS attacks and at last discuss possible technologies that can be used to prevent such threats.
作者 杨盾 王小鹏 YANG Dun,WANG Xiao-peng(Jiangsu Posts & Telecommunications Planning and Designing Institute, Nanjing Jiangsu Province 21001)
出处 《软件》 2018年第3期175-180,共6页 Software
关键词 软件定义网络(SDN) 信息安全 分布式拒绝服务攻击 控制器 Software Definition Network (SDN) Information Security DDoS Controller
  • 相关文献

参考文献6

二级参考文献51

  • 1Casado M.Architectural support for security management in enterprise networks.Doctoral Dissertation,Stanford University,2007.
  • 2ONF.Sofiware-Defined Networking:the New Norm for Networks.ONF White Paper,2012.
  • 3ONF.OpenFlow Switch Specification Version 1.3.1,2012.
  • 4Wasserman M,Hartman S.Security Analysis of the Open Networking Foundation (ONF) OpenFlow Switch Specification.IETF Draft(draft-mrw-sdnsec-openflow-analysis),2013.
  • 5Hartman S,Wasserman M,Zhang D.Security Requirements in the Software Defined Networking Model,IETF Draft (draft-hartman-sdnsec-requirements),2013.
  • 66 Porrasy P,Shinz S,Yegneswaran V,et al.A security enforcement kernel for OpenFlow networks.Proceedings of the ACM SIGCOMM Workshop on Hot Topics in Software Defined Networking (HotSDN),Helsinki,Finland,August 2012.
  • 7Shin S,Porras P,Yegneswaran V,et al.FRESCO:modular composable security services for software-defined networks.Proceedings of the ISOC Network and Distributed System Security Symposium,San Diego,CA,February 2013.
  • 8Hardt D.The OAuth 2.0 Authorization Framework.IETF RFC6749,2012.
  • 9Howlett J,Hartman S,Tschofenig H,et al.Application Bridging for Federated Access Beyond Web (ABFAB) Architecture.IETF Draft (draft-ietf-ABFAB-arch),2012.
  • 10Campbell B,Mortimore C,Jones M,et al.Assertion Framework for OAuth 2.0 Client Authentication and Authorization Grants.IETF Draft (draft-ietf-oauth-assertions),2013.

共引文献66

同被引文献64

引证文献10

二级引证文献16

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部