首页|An Active Defense Solution for ARP Spoofing in OpenFlow Network?

An Active Defense Solution for ARP Spoofing in OpenFlow Network?

扫码查看
As an emerging network technology, Software-defined network (SDN), has been rapidly deve-loping for recent years due to its advantage in network management and updating. There are still a lot of open problems while applying this novel technology in reality, especially for meeting security demands. The Address resolution protocol (ARP) spoofing, a representative network attack in traditional networks is investigated. We implement the ARP spoofing in SDN network firstly and find that the threat of ARP attack still exists and has big impact on the network. We propose a novel mechanism as defense solution for ARP spoofing oriented to OpenFlow platform. Theoretical analyzation is given, and the mechanism is implemented as a module of POX controller. Experiment results and performance evaluations show that our solution can reduce the security threat of ARP spoofing remarkably on OpenFlow platform and related SDN platforms.

Software-defined network (SDN)Address resolution protocol (ARP) spoofingOpenFlow

XIA Jing、CAI Zhiping、HU Gang、XU Ming

展开 >

College of Computer, National University of Defense Technology, Changsha 410073, China

School of Computer and Software, Nanjing University of Information Science & Technology, Nanjing 210044, China

This work is supported by the National Natural Science Foundation of ChinaThis work is supported by the National Natural Science Foundation of ChinaThis work is supported by the National Natural Science Foundation of China

613791456137914461501482

2019

中国电子杂志(英文版)

中国电子杂志(英文版)

CSTPCDCSCDSCIEI
ISSN:1022-4653
年,卷(期):2019.28(1)
  • 17