Experimental Security Analysis of Controller Software in SDNs: A Review

06/23/2019
by   Tiago V. Ortiz, et al.
0

The software defined networking paradigm relies on the programmability of the network to automatically perform management and reconfiguration tasks. The result of adopting this programmability feature is twofold: first by designing new solutions and, second, by concurrently making room for the exploitation of new security threats. As a malfunction in the controller software may lead to a collapse of the network, assessing the security of solutions before their deployment, is a major concern in SDNs. In light of this, we have conducted a comprehensive review of the literature on the experimental security analysis of the control plane in SDNs, with an emphasis on vulnerabilities of the controller software. Additionally, we have introduced a taxonomy of the techniques found in the literature with regard to the experimental security analysis of SDN controller software. Furthermore, a comparative study has been carried out of existing experimental approaches considering the security requirements defined by the Open Network Foundation (ONF). As a result, we highlighted that there is a need for a standardization of the methodologies employed for automated security analysis, that can meet the appropriate requirements, and support the development of reliable and secure software for SDNs.

READ FULL TEXT
research
11/03/2017

Trailing the Snail: SDN Controller Security Evolution

The first OpenFlow Software-Defined Network (SDN) Controller, NOX, was d...
research
04/12/2023

A Security Evaluation Framework for Software-Defined Network Architectures in Data Center Environments

The importance of cloud computing has grown over the last years, which r...
research
11/12/2018

SD-WAN Threat Landscape

Software Defined Wide Area Network (SD-WAN or SDWAN) is a modern concept...
research
07/16/2020

A Framework for Threats Analysis Using Software-Defined Networking

The ability to analyze network threats is very important in security res...
research
07/21/2023

Software defined networking flow admission and routing under minimal security constraints

In recent years, computer networks and telecommunications in general hav...
research
10/25/2017

SD-WISE: A Software-Defined WIreless SEnsor network

SD-WISE is a complete software-defined solution for wireless sensor (and...
research
07/08/2019

P4-IPsec: Implementation of IPsec Gateways in P4 with SDN Control for Host-to-Site Scenarios

In this paper we propose P4-IPsec which follows the software-defined net...

Please sign up or login with your details

Forgot password? Click here to reset