Path information based packet verification for authentication of SDN network manager

1Citations
Citations of this article
3Readers
Mendeley users who have this article in their library.
Get full text

Abstract

In this paper we propose new authentication scheme that is suitable for Software-Defined Networks (SDN). Basically our approach is based on One Time Password (OTP). To check legitimacy of OTP, our model uses an additional parameter, which is related with the path information where packet passed through. This is possible because SDN controller can monitor the entire network status. Proposed scheme can be briefly described as follows. First, a specific path is assigned to the network manager and his OTP packet should pass through this path. The controller modifies corresponding flow rules to forward OTP packet along correct direction. Consequently, OTP packet of legal user will be forwarded on pre-assigned path. Using this model, SDN controller can be protected from attack even when attacker knows the OTP because SDN controller accepts OTP packet only if it is forwarded along specific path. Finally we analyzed overhead caused from our authentication mechanism.

Cite

CITATION STYLE

APA

Lee, J., Park, M. W., & Chung, T. M. (2015). Path information based packet verification for authentication of SDN network manager. In Lecture Notes in Electrical Engineering (Vol. 330, pp. 861–866). Springer Verlag. https://doi.org/10.1007/978-3-662-45402-2_122

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free