Affiliation:
1. National University of Sciences and Technology, Pakistan
2. University of South Wales, UK
3. Charles Sturt University, Australia
Abstract
Software Defined Networking (SDN) is an evolving technology that decouples the control functionality from the underlying hardware managed by the control plane. The application plane supports programmers to develop numerous applications (such as networking, management, security, etc.) that can even be executed from remote locations. Northbound interface (NBI) bridges the control and application planes to execute the third-party applications business logic. Due to the software bugs in applications and existing vulnerabilities such as illegal function calling, resource exhaustion, lack of trust, and so on, NBIs are susceptible to different attacks. Based on the extensive literature review, we have identified that the researchers and academia have mainly focused on the security of the control plane, data plane, and southbound interface (SBI). NBI, in comparison, has received far less attention. In this article, the security of the least explored, but a critical component of the SDN architecture, i.e., NBI, is analyzed. The article provides a brief overview of SDN, followed by a detailed discussion on the categories of NBI, vulnerabilities of NBI, and threats posed by malicious applications to NBI. Efforts of the researchers to counter malicious applications and NBI issues are then discussed in detail. The standardization efforts for the single acceptable NBI and security requirements of SDN by Open Networking Foundation (ONF) are also presented. The article concludes with the future research directions for the security of a single acceptable NBI.
Publisher
Association for Computing Machinery (ACM)
Subject
General Computer Science,Theoretical Computer Science
Reference114 articles.
1. Security in Software Defined Networks: A Survey
2. Richard Alimi Reinaldo Penno and Y. Yang. 2011. ALTO protocol. Retrieved from draft-ietfalto-protocol-09.txt. Richard Alimi Reinaldo Penno and Y. Yang. 2011. ALTO protocol. Retrieved from draft-ietfalto-protocol-09.txt.
3. A trust management framework for Software Defined Network (SDN) controller and network applications
4. A Trust Management Framework for Network Applications within an SDN Environment
5. NetKAT
Cited by
9 articles.
订阅此论文施引文献
订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献