Abstract
Currently, network environments are complex infrastructures with different levels of security, isolation and permissions. The management of these networks is a complex task, faced with different issues such as adversarial attacks, user demands, virtualisation layers, secure access and performance optimisation. In addition to this, forensic readiness is a demanded target. To cover all these aspects, network packet captures are used to train new staff, evaluate new security features and improve existing implementations. Because of this, realistic network packet captures are needed that cover all appearing aspects of the network environment. Packet generators are used to create network traffic, simulating real network environments. There are different network packet generators available, but there is no valid rule set defining the requirements targeting packet generators. The manual creation of such network traces is a time-consuming and error-prone task, and the inherent behaviour of virtual networks eradicates a straight-forward automation of trace generation in comparison to common networks. Hence, we analyse relevant conditions of modern virtualised networks and define relevant requirements for a valid packet generation and transformation process. From this, we derive recommendations for the implementation of packet generators that provide valid and correct packet captures for use with virtual networks.
Reference61 articles.
1. Virtual eXtensible Local Area Network (VXLAN): A Framework for Overlaying Virtualized Layer 2 Networks over Layer 3 Networks. RFC 7348, 2014
https://datatracker.ietf.org/doc/rfc7348/
2. NVGRE: Network Virtualization Using Generic Routing Encapsulation. RFC 7637, 2015
https://datatracker.ietf.org/doc/rfc7637/
3. Internet Protocol Encapsulation of AX.25 Frames. RFC 1226, 1991
https://datatracker.ietf.org/doc/rfc1226/
4. The Point-to-Point Protocol (PPP). RFC 1661, 1994
https://datatracker.ietf.org/doc/rfc1661/
5. Early detection of DDoS attacks against SDN controllers;Mousavi;Proceedings of the 2015 International Conference on Computing, Networking and Communications (ICNC),2015
Cited by
1 articles.
订阅此论文施引文献
订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献
1. Upgrade and Optimization of Virtual Network Security Management on Blockchain;2023 IEEE International Conference on Paradigm Shift in Information Technologies with Innovative Applications in Global Scenario (ICPSITIAGS);2023-12-28