期刊文献+

基于SDN技术的网络入侵追踪与响应系统的研究 被引量:3

Research on network intrusion tracking and response system based on SDN technology
下载PDF
导出
摘要 针对当前基于SDN的网络入侵阻断系统HYDRA的不足,设计并实现了基于SDN技术的网络入侵追踪与响应系统。新系统将控制逻辑和响应逻辑解耦,提高系统的可扩展性。控制层改进任务调度模型,提高系统的顽健性。完善的系统接口规范提高系统可用性。对RYU控制器的研究和改进进一步挖掘控制器潜力,使系统与SDN联系更加紧密。 In view of the shortcomings of the current network intrusion blocking system based on SDN,the network intrusion tracking and response system based on SDN technology was designed and implemented.The logic and response logic were decoupled,and the scalability of the system was improved.The task scheduling model and the robustness of the system were improred.Perfect system interface specification improves the availability of system.The research and improvement of RYU controller further explore the potential of the controller,so that the system is more closely related to SDN.
作者 程俊 龚俭 杨望 臧小东 CHENG Jun;GONG Jian;YANG Wang;ZANG Xiaodong(School of Cyber Science and Engineering,Southeast University,Nanjing 211189,China)
出处 《通信学报》 EI CSCD 北大核心 2018年第A01期244-250,共7页 Journal on Communications
基金 赛尔网络下一代互联网技术创新资助项目(No.NGII20160409)~~
关键词 软件定义网络 入侵追踪 可扩展性 规范接口 software define network(SDN) intrusion traceback scalability specification interface
  • 相关文献

参考文献2

二级参考文献65

  • 1Mckeown N, Anderson T, Balakrishnan H, Parulkar G, Peterson L, Rexford J, Shenker S, Turner J. OpenFlow: Enabling innovation in campus networks. ACM SIGCOMM Computer Communication Review, 2008,38(2):69-74. [doi: 10.1145/1355734. 1355746].
  • 2Elliott C. GENI: Opening up new classes of experiments in global networking. IEEE Internet Computing, 2010,14(1):39-42.
  • 3Gavras A, Karila A, Fdida S, May M, Potts M. Future Internet research and experimentation: The FIRE initiative. ACM SIGCOMM Computer Communication Review, 2007,37(3):89-92. [doi: 10.114511273445.1273460].
  • 4JGN2plus. 2012. http://www.jgn.nict.go.jp/english/index.html.
  • 5SOFIA. 2012. http://fi.ict.ac.cn/research/sofia_overview.htm.
  • 6Yang L, Dantu R, Anderson T, Gopal R. Forwarding and Control Element Separation (ForCES) Framework. RFC 3746, 2004. http://tools.ietf.org/html/rfc3746.
  • 7Greenberg A, Hjalmtysson G, Maltz DA, Myers A, Rexford J, Xie G, Yan H, Zhan J, Zhang H. A clean slate 4D approach to network control and management. ACM SIGCOMM Computer Communication Review, 2005,35(5):41-54. [doi: 10.1145/1096536. 1096541].
  • 8Caesar M, Caldwell D, Feamster N, Rexford J, Shaikh A, Merwe J. Design and implementation of a routing control platform. In: Proc. of the 2rd USENIX Symp. on Networked Systems Design and Implementation (NSDI). Boston: USENIX Association, 2005. 15-28.
  • 9Casado M, Garfinkel T, Akella A, Freedman MJ, Boneh D, Mckeown N, Shenker S. SANE: A protection architecture for enterprise networks. In: Proc. of the 15th Conf. on USENIX Security Symp. Vancouver: USENIX Association, 2006. 137-151.
  • 10Casado M, Freedman MJ, Pettit J, Luo J, Mckeown N, Shenker S. Ethane: Taking control of the enterprise. In: Proc. of the SIGCOMM 2007. Kyoto: ACM Press, 2007. 1-12. [doi: 10.1145/1282380.1282382].

共引文献424

同被引文献31

引证文献3

二级引证文献1

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部