DocumentCode
1978773
Title
Assessing the impact of resource attack in Software Defined Network
Author
Nguyen Tri, Hiep T. ; Kyungbaek Kim
Author_Institution
Dept. of Electron. & Comput. Eng., Chonnam Nat. Univ., Gwangju, South Korea
fYear
2015
fDate
12-14 Jan. 2015
Firstpage
420
Lastpage
425
Abstract
Software Defined Network (SDN) empowers network operators with more flexibility to program their networks. In SDN, dummy switches on the data plane dynamically forward packets based on the rules which are managed by a centralized controller. To apply the rules, switches need to write the rules in its flow table. However, because the size of the flow table is limited, a scalability problem can be an issue. Also, this scalability problem becomes a security issue related to Distributed Denial of Service (DDoS) attacks, especially the resource attack which consumes all flow tables of switches. In this paper, we explore the impact of the resource attack to a SDN network. The resource attack is emulated on the SDN with mininet and OpenDaylight, and the effect of resource attack to the SDN is deeply analyzed in the aspects of delay and bandwidth. Through the evaluation, we highlight the importance of managing the flow tables with the awareness of their size limitation. Also, we discuss solutions which can address the resource attack and their challenges.
Keywords
computer network security; resource allocation; software defined networking; Distributed Denial of Service attack; SDN network; mininet; open daylight; packet forwarding; resource attack; software defined network; Bandwidth; Control systems; Delays; Ports (Computers); Process control; Security; Servers;
fLanguage
English
Publisher
ieee
Conference_Titel
Information Networking (ICOIN), 2015 International Conference on
Conference_Location
Cambodia
Type
conf
DOI
10.1109/ICOIN.2015.7057934
Filename
7057934
Link To Document