Yayınlanmış 1 Ocak 2023 | Sürüm v1
Konferans bildirisi Açık

Securing Southbound Interface in SDNs: Utilizing Support Vector Machines for OpenFlow Packet Classification

  • 1. Istanbul Tech Univ, Dept Comp Engn, Istanbul, Turkiye
  • 2. Edinburgh Napier Univ, Sch Comp Engn & Built Environm, Edinburgh, Midlothian, Scotland
  • 3. BTS Grp, Istanbul, Turkiye

Açıklama

The southbound interface enables communication and interaction between the Software-Defined Networking (SDN) controller and the underlying network infrastructure, including switches, routers, and other network devices, requesting network resources and manipulating the network's behavior. Nevertheless, it introduces certain risks that must be addressed to ensure the effective deployment and operation of SDN systems. This paper introduces an OpenFlow Packet Classification Framework for southbound communication in SDN using a Support Vector Machine (SVM) that addresses possible security risks associated with OpenFlow communication in SDN environments. The proposed framework empowers the SVM model to capture complex patterns and boundaries within Southbound communication data using our novel adjusted-weight level approach. Our empirical analysis demonstrates that this framework yields superior results in classifying Southbound SDN packets by incorporating level adjustments to OpenFlow parameters. The introduced solution demonstrated its effectiveness with remarkable accuracy, achieving a detection rate of 0.985 as measured by the classification model's score, coupled with a notably low occurrence of false alarms. The examined OpenFlow Packet Classification Framework also offers a promising platform for future studies implementing advanced security mechanisms, thereby mitigating security risks prevalent in SDN environments.

Dosyalar

bib-3856613d-c1fe-40fc-ba8a-a6880d47d120.txt

Dosyalar (299 Bytes)

Ad Boyut Hepisini indir
md5:37cc9f101d3552275d00cceba505659a
299 Bytes Ön İzleme İndir