2014 IEEE Network Operations and Management Symposium (NOMS) 2014
DOI: 10.1109/noms.2014.6838409
|View full text |Cite
|
Sign up to set email alerts
|

OrchSec: An orchestrator-based architecture for enhancing network-security using Network Monitoring and SDN Control functions

Abstract: The original design of the Internet did not take network security aspects into consideration, instead it aimed to facilitate the process of information exchange between end hosts. Consequently, many protocols that are part of the Internet infrastructure expose a set of vulnerabilities that can be exploited by attackers. To reduce these vulnerabilities, several security approaches were introduced as a form of add-ons to the existing Internet architecture. However, these approaches have their drawbacks (e.g., la… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
1
1
1

Citation Types

1
53
0
1

Year Published

2015
2015
2022
2022

Publication Types

Select...
5
3

Relationship

0
8

Authors

Journals

citations
Cited by 121 publications
(55 citation statements)
references
References 14 publications
(12 reference statements)
1
53
0
1
Order By: Relevance
“…4 As expected, we observe an increased controller CPU load for larger networks, for the same attack sending rate. In summary, we can say that the larger the network, the easier it is for an attacker to launch a successful attack on the controller, due to the attack amplification effect.…”
Section: Control Plane Attacksupporting
confidence: 82%
See 2 more Smart Citations
“…4 As expected, we observe an increased controller CPU load for larger networks, for the same attack sending rate. In summary, we can say that the larger the network, the easier it is for an attacker to launch a successful attack on the controller, due to the attack amplification effect.…”
Section: Control Plane Attacksupporting
confidence: 82%
“…OrchSec [4] is an orchestrator-based architecture that mainly aims to improve network security and increase the system performance, flexibility, reliability and reliance through abstracting the control and network monitoring functions from the control plane and placing them at an additional layer, i.e. the Orchestrator.…”
Section: Security Via Sdnmentioning
confidence: 99%
See 1 more Smart Citation
“…[3] lists three core characteristics that differentiate SDN networks from traditional networks from a security perspective, global network view, self-healing mechanism, increased control capabilities. [4] combines SDN and sFlow [5] monitor to defend the DRDoS attack. It decouples the controlling function from monitoring to minimize the cost of controller.…”
Section: Related Workmentioning
confidence: 99%
“…For some organizations the costs and management issues related to these deployments can be prohibitive. Additionally, in traditional networks the lack of a centralized control of these security functions can further complicate their deployment [61]. In contrast, SDN enables the implementation of applications that have the ability to support similar security functions in a much more flexible manner, and it offers a suitable place for the implementation of more accurate, reliable 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 Qazi et al [84] and efficient security solutions.…”
Section: Securitymentioning
confidence: 99%