UPM Institutional Repository

Scalable and secure SDN based ethernet architecture by suppressing broadcast traffic


Citation

Munther, Munther Numan and Hashim, Fazirulhisyam and Abdul Latiff, Nurul Adilah and Alezabi, Kamal Ali and Jiun, Terng Liew (2021) Scalable and secure SDN based ethernet architecture by suppressing broadcast traffic. Egyptian Informatics Journal, 23 (1). art. no. 2113. pp. 113-126. ISSN 1110-8665; ESSN: 2090-4754

Abstract

Ethernet is one of the widespread protocols residing in the second layer of the seven-layers Open Systems Interconnection (OSI) model. Ethernet offers various advantages which enable its widespread use in all types of network topology and becomes an essential part of computer and network architecture. Despite its features, Ethernet suffers from scalability issues where the increasing number of hosts in a single broadcast domain will significantly expand the broadcast traffic in the network. Since the emergence of software-defined networking (SDN), researchers exploited various attractive features of SDN to suppress the broadcast traffic. Although capable in addressing the scalability issue of Ethernet, the existing SDN based solutions are lacking of security mechanism, which may expose the network to various ARP based attacks. Owing to this issue, this paper proposes a floodless and secure mechanism to suppress broadcast traffic. In general, the proposed solution utilizes SDN architecture and accommodates a multistage security algorithm. The multistage security algorithm consists of three stages; each stage incorporates specific analysis to identify the packet status or behavior, and react accordingly based on its status. To demonstrate the efficiency of the proposed solution, several ARP based attack scenarios are generated and evaluated using Mininet emulator. The performance evaluation indicates that the true positive ratio for attack detection in the proposed solution is 57.14% for the first stage, 66.66% for the second stage, and in some cases may achieve 100% for the final stage.


Download File

[img] Text
Scalable and secure SDN based ethernet architecture by suppressing broadcast traffic.pdf

Download (18kB)

Additional Metadata

Item Type: Article
Divisions: Faculty of Engineering
DOI Number: https://doi.org/10.1016/j.eij.2021.08.001
Publisher: Elsevier BV
Keywords: Software-defined network (SDN); Ethernet scalability; Address resolution protocol (ARP); Dynamic host configuration protocol (DHCP); ARP storm; Spoofing attack
Depositing User: Ms. Che Wa Zakaria
Date Deposited: 06 Jan 2023 08:35
Last Modified: 06 Jan 2023 08:35
Altmetrics: http://www.altmetric.com/details.php?domain=psasir.upm.edu.my&doi=10.1016/j.eij.2021.08.001
URI: http://psasir.upm.edu.my/id/eprint/95014
Statistic Details: View Download Statistic

Actions (login required)

View Item View Item