Moving target defense solution on network layer based on OpenFlow

In order to take an active part in network attack and defense,a moving target defense solution on network layer based on OpenFlow was proposed,using the flexibility of network brought by OpenFlow network architecture.On the network layer,through mapping the correspondent nodes’ addresses to pseudo-r...

Full description

Saved in:
Bibliographic Details
Main Authors: Yi-xun HU, Kang-feng ZHENG, Yi-xian YANG, Xin-xin NIU
Format: Article
Language:zho
Published: Editorial Department of Journal on Communications 2017-10-01
Series:Tongxin xuebao
Subjects:
Online Access:http://www.joconline.com.cn/zh/article/doi/10.11959/j.issn.1000-436x.2017202/
Tags: Add Tag
No Tags, Be the first to tag this record!
Description
Summary:In order to take an active part in network attack and defense,a moving target defense solution on network layer based on OpenFlow was proposed,using the flexibility of network brought by OpenFlow network architecture.On the network layer,through mapping the correspondent nodes’ addresses to pseudo-random virtual addresses in the LAN and mapping correspondent nodes’ ports to virtual ports,achieving the hiding of correspond nodes in the whole network and the information of network architecture.Researches verify the system’s effectiveness.Comparing with existing moving target defense solutions,the proposed algorithm can be deployed easily in the traditional network,and realize comprehensive protection of the corresponding in the whole network.
ISSN:1000-436X