Preventing flow rules injection attacks in SDNs using Blockchains

Authors

  • Ramon Amorim dos Santos Delgado Ama Universidade Federal de São Paulo - UNIFESP
  • Valério Rosset Instituto Tecnológico de Aeronáutica - ITA

DOI:

https://doi.org/10.5335/rbca.v16i3.15696

Keywords:

SDN, Blockchain;, Security;, Performace Analysis.

Abstract

Due to the programmability feature of Software-Defined Networks (SDNs), both the control software and network applications are susceptible to attacks, such as the injection of false flow rules. Thus, there is a need to investigate alternative solutions that enable the verification of integrity, authenticity, correctness, and agreement on the set of flow rules to be deployed on switches. In this context, the secure distribution of flow rules can be implemented through Distributed Ledgers (DLs), specifically utilizing Blockchain (BC) technology. This technology allows for the maintenance of a distributed and collaborative information registry among participants, who are responsible for the integrity and validation of the inserted data. With this in mind, this article presents an integrated model using BC to support security in the distribution and establishment of flow rules in SDNs. The proposed model was validated through experimental performance analysis and security assessment in an emulated environment. Results show that the proposed model is effective against attacks based on packet injection techniques.

Downloads

Download data is not yet available.

Published

2024-12-03

Issue

Section

Original Paper

How to Cite

[1]
2024. Preventing flow rules injection attacks in SDNs using Blockchains. Brazilian Journal of Applied Computing. 16, 3 (Dec. 2024), 63–73. DOI:https://doi.org/10.5335/rbca.v16i3.15696.