Title :
The (in)security of Topology Discovery in Software Defined Networks
Author :
Talal Alharbi;Marius Portmann;Farzaneh Pakzad
Author_Institution :
School of ITEE, The University of Queensland, Brisbane, Australia
Abstract :
Topology Discovery is an essential service in Software Defined Networks (SDN). Most SDN controllers use a de-facto standard topology discovery mechanism based on Open-Flow to identify active links in the network. This paper discusses the security, or rather lack thereof, of the current SDN topology discovery mechanism, and its vulnerability to link spoofing attacks. The feasibility and impact of the attacks are verified and demonstrated via experiments. The paper presents and evaluates a countermeasure based on HMAC authentication.
Keywords :
"Ports (Computers)","Control systems","Topology","Network topology","Routing","Protocols","Standards"
Conference_Titel :
Local Computer Networks (LCN), 2015 IEEE 40th Conference on
DOI :
10.1109/LCN.2015.7366363