Software defined networking flow admission and routing under minimal security constraints

07/21/2023
by   Jorge López, et al.
0

In recent years, computer networks and telecommunications in general have been shifting paradigms to adopt software-centric approaches. Software Defined Networking (SDN) is one of such paradigms that centralizes control and intelligent applications can be defined on top of this architecture. The latter enables the definition of the network behavior by means of software. In this work, we propose an approach for Flow Admission and Routing under Minimal Security Constraints (FARSec) in Software Defined Networks, where network flows must use links which are at least as secure as their required security level. We prove that FARSec can find feasible paths that respect the minimum level of security for each flow. If the latter is not possible FARSec rejects the flow in order not to compromise its security. We show that the computational complexity of the proposed approach is polynomial. Experimental results with semi-random generated graphs confirm the efficiency and correctness of the proposed approach. Finally, we implement the proposed solution using OpenFlow and ONOS – an SDN open-source controller. We validate its functionality using an emulated network with various security levels.

READ FULL TEXT
research
09/21/2020

MLSNet: A Policy Complying Multilevel Security Framework for Software Defined Networking

Ensuring that information flowing through a network is secure from manip...
research
09/22/2020

Priority Flow Admission and Routing in SDN: Exact and Heuristic Approaches

This paper proposes a novel admission and routing scheme which takes int...
research
05/27/2020

A Security Policy Model Transformation and Verification Approach for Software Defined Networking

Software defined networking (SDN) has been adopted to enforce the securi...
research
01/10/2023

A Practical Runtime Security Policy Transformation Framework for Software Defined Networks

Software-defined networking (SDN) has been widely utilized to enforce th...
research
06/07/2019

Identifying Operational Data-paths in Software Defined Networking Driven Data-planes

In this paper, we propose an approach that relies on distributed traffic...
research
01/31/2022

Monitoring Jitter in Software Defined Networks

End-to-end jitter of a flow is an important metric that indicates the Qu...
research
06/23/2019

Experimental Security Analysis of Controller Software in SDNs: A Review

The software defined networking paradigm relies on the programmability o...

Please sign up or login with your details

Forgot password? Click here to reset