Software-Defined Network (SDN) Data Plane Security: Issues, Solutions and Future Directions

04/01/2018
by   Arash Shaghaghi, et al.
0

Software-Defined Network (SDN) radically changes the network architecture by decoupling the network logic from the underlying forwarding devices. This architectural change rejuvenates the network-layer granting centralized management and re-programmability of the networks. From a security perspective, SDN separates security concerns into control and data plane, and this architectural recomposition brings up exciting opportunities and challenges. The overall perception is that SDN capabilities will ultimately result in improved security. However, in its raw form, SDN could potentially make networks more vulnerable to attacks and harder to protect. In this paper, we focus on identifying challenges faced in securing the data plane of SDN - one of the least explored but most critical components of this technology. We formalize this problem space, identify potential attack scenarios while highlighting possible vulnerabilities and establish a set of requirements and challenges to protect the data plane of SDNs. Moreover, we undertake a survey of existing solutions with respect to the identified threats, identifying their limitations and offer future research directions.

READ FULL TEXT
research
06/28/2022

A Survey on SDN & SDCN Traffic Measurement: Existing Approaches and Research Challenge

Software Defined Network (SDN) is the next generation network that decou...
research
07/10/2020

Improving Software Defined Cognitive and Secure Networking

Traditional communication networks consist of large sets of vendor-speci...
research
03/12/2019

A Survey on Data Plane Flexibility and Programmability in Software-Defined Networking

Software-defined networking (SDN) attracts the attention of the research...
research
12/21/2019

Guidelines for 5G End to End Architecture and Security Issues

Hackers target their attacks on the most vulnerable parts of a system. A...
research
10/21/2020

Software-Defined Multi-domain Tactical Networks: Foundations and Future Directions

Software Defined Networking (SDN) has emerged as a programmable approach...
research
12/05/2019

5G network slicing using SDN and NFV- A survey of taxonomy, architectures and future challenges

In this paper, we provide a comprehensive review and updated solutions r...
research
01/14/2020

S3: A DFW-based Scalable Security State Analysis Framework for Large-Scale Data Center Networks

With an average network size approaching 8000 servers, datacenter networ...

Please sign up or login with your details

Forgot password? Click here to reset