• DocumentCode
    3710154
  • Title

    A network topology-aware selectively distributed firewall control in SDN

  • Author

    Thuy Vinh Tran;Heejune Ahn

  • Author_Institution
    Department of Electrical and Information Engineering, Seoul National University of Science and Technology, Seoul, Republic of Korea
  • fYear
    2015
  • Firstpage
    89
  • Lastpage
    94
  • Abstract
    Software defined networking (SDN) and its enabling standards, OpenFlow promise flexible and faster evolving networks, by separating the control plane from data plane so that the control plane becomes more responsive to the changes in topology, load balancing requirement, and suspicious traffics. To ever-changing security attacks, SDN also offers new potentials to handle security threats in more robust and reactive way. The previous SDN firewall proposals suffer from firewall long setup up latency and controller overhead. This paper presents a topology aware selective firewall distribution solution, which sends only necessary firewall configuration rules considering the traffic flows and network topology. The Mininet simulation results in various network sizes show the proposed solution reduces the firewall setup traffic and lessens the firewall-violated traffic travel route significantly, so suitable for large-scale SDN networks.
  • Keywords
    "Firewalls (computing)","Network topology","Hardware","Topology","Control systems","Ports (Computers)"
  • Publisher
    ieee
  • Conference_Titel
    Information and Communication Technology Convergence (ICTC), 2015 International Conference on
  • Type

    conf

  • DOI
    10.1109/ICTC.2015.7354501
  • Filename
    7354501