节点文献
软件定义网络探测技术综述
Review on Software Defined Networks Detection Technologies
【摘要】 由于软件定义网络的灵活性和可编程性,引起了学术界和工业界的广泛关注,但同时软件定义网络中控制平面和数据平面分离也为远程攻击者实施攻击打开了大门。攻击者利用软件定义网络探测技术得到流表规则等信息,就可以根据这些信息制定针对性的攻击策略。另一方面,软件定义网络探测技术反过来也促进了反探测技术的发展,从而进一步提高自身的安全性。通过深入探讨现有的软件定义网络探测技术,包括网络类型探测、流表规则探测和流表容量探测,总结出不同方案之间的优缺点。最后对软件定义网络探测技术的未来发展做了展望,对于相关研究者具有一定的参考意义。
【Abstract】 Due to the flexibility and programmability of software defined networking,it has attracted widespread attention in academia and industry. At the same time,however,the separation of the control plane and the data plane in software defined networks opens the door for remote attackers to launch attacks. An attacker can use software defined networks detection technologies to obtain information such as flow rules,and then formulate targeted attack strategies based on the information.On the other hand,software defined networks detection technologies promote the development of antidetection technologies in turn, thus further improving its own security. The advantages anddisadvantages of different schemes were summed up through an in-depth discussion of the existing software definition network detection technologies, including network type detection, flow rules detection and flow table capacity detection. Finally,the future development of software defined network detection technologies was prospected,which has certain reference significance for relevant researchers.
【Key words】 software defined networks; detection technologies; network type detection; flow rules detection; flow table capacity detection;
- 【文献出处】 重庆理工大学学报(自然科学) ,Journal of Chongqing University of Technology(Natural Science) , 编辑部邮箱 ,2018年09期
- 【分类号】TP393.0
- 【被引频次】1
- 【下载频次】350