2018
DOI: 10.1109/jsac.2018.2871313
|View full text |Cite
|
Sign up to set email alerts
|

Tennison: A Distributed SDN Framework for Scalable Network Security

Abstract: Despite the relative maturity of the Internet, the computer networks of today are still susceptible to attack. The necessary distributed nature of networks for wide area connectivity has traditionally led to high cost and complexity in designing and implementing secure networks. With the introduction of Software Defined Networks (SDN) and Network Functions Virtualisation (NFV), there are opportunities for efficient network threat detection and protection. SDN's global view provides a means of monitoring and de… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
2
1

Citation Types

0
21
0

Year Published

2019
2019
2024
2024

Publication Types

Select...
4
3
2

Relationship

1
8

Authors

Journals

citations
Cited by 52 publications
(21 citation statements)
references
References 31 publications
0
21
0
Order By: Relevance
“…The centralized control frameworks, such as SDN controllers, oversee and control the entire network from a central vintage point, making it a favorite choice for resource exhaustion and Denial of Service (DoS) attacks [252]. Overwhelming the controller with any kind of traffic can cause a jamming effect, resource exhaustion, or a DoS attack as described in [261], [262]. Traditional mechanisms are mostly reactive, i.e., a challenge occurs and then a solution is deployed, which introduces delay or interruption in services.…”
Section: A ML For Sdnmentioning
confidence: 99%
“…The centralized control frameworks, such as SDN controllers, oversee and control the entire network from a central vintage point, making it a favorite choice for resource exhaustion and Denial of Service (DoS) attacks [252]. Overwhelming the controller with any kind of traffic can cause a jamming effect, resource exhaustion, or a DoS attack as described in [261], [262]. Traditional mechanisms are mostly reactive, i.e., a challenge occurs and then a solution is deployed, which introduces delay or interruption in services.…”
Section: A ML For Sdnmentioning
confidence: 99%
“…Other relevant works on the topic include [24] and [25]. OpenNetMon [24], for traffic monitoring (flow-related information collection with OpenFlow), uses an adaptive polling rate that increases and decreases respectively when the measurement values differ between samples and when the values stabilize.…”
Section: Related Workmentioning
confidence: 99%
“…OpenNetMon [24], for traffic monitoring (flow-related information collection with OpenFlow), uses an adaptive polling rate that increases and decreases respectively when the measurement values differ between samples and when the values stabilize. TENNISON [25] is a distributed security framework with effective and proportionate monitoring. It offers multilevel monitoring using appropriate tools (sFlow, IPFIX, DPI) from layer 1 to layer 2.…”
Section: Related Workmentioning
confidence: 99%
“…VHNDA distributes diverse variants, which are various implementations of the same functionality, to network nodes to limit the propagation of malicious traffic. In [26], a novel distributed SDN security framework for multi-level flow monitoring named TENNISON is proposed. TENNISON can monitor a large number of flows and perform deep packet inspection (DPI) on selected flows.…”
Section: B Sdn-based Cyber-securitymentioning
confidence: 99%