Data inconsistency attack and defense in software-defined networking소프트웨어 정의 네트워킹에서의 데이터 불일치 공격 및 방어 연구

Cited 0 time in webofscience Cited 0 time in scopus
  • Hit : 839
  • Download : 0
DC FieldValueLanguage
dc.contributor.advisorShin, Seungwon-
dc.contributor.advisor신승원-
dc.contributor.authorWoo, Seungwon-
dc.date.accessioned2019-09-04T02:49:15Z-
dc.date.available2019-09-04T02:49:15Z-
dc.date.issued2019-
dc.identifier.urihttp://library.kaist.ac.kr/search/detail/view.do?bibCtrlNo=843589&flag=dissertationen_US
dc.identifier.urihttp://hdl.handle.net/10203/267175-
dc.description학위논문(석사) - 한국과학기술원 : 정보보호대학원, 2019.2,[iv, 32 p. :]-
dc.description.abstractOver the years, Software-Defined Networking (SDN) has grown aggressively, and many SDN controller products have been released to date as not only open source projects but also commercial ones. Considering the adoption of SDN, the security of SDN components is an essential aspect that needs to be thoroughly investigated, so research in this area has been getting attention. However, despite growing interest in SDN security, SDN controllers are vulnerable to security vulnerabilities that have not yet been disclosed. Among them, we focus on data inconsistency problems between the controller and switches. In this work, we try to find out the inconsistency states between each layer, which are powerful enough to jeopardize the entire network. To more efficiently detect those vulnerabilities and bugs, we introduce a framework called RE-CHECKER that can find the security holes using RESTful services in SDN controller. As a result, using RE-CHECKER, we found four bug types against three open source controllers: ONOS, Floodlight, and Ryu. Based on the result of RE-CHECKER, we illustrate some design flaws of the controllers through security analysis. After that, we present another framework called AUDI, which can detect and address the data inconsistency between the controller and switches. To prove the feasibility and examine the potential impact of the data inconsistency, we demonstrate some vulnerable scenarios in the real SDN environments.-
dc.languageeng-
dc.publisher한국과학기술원-
dc.subjectSDN▼asoftware-defined networking▼aSDN security▼adata inconsistency-
dc.subjectSDN▼a소프트웨어 정의 네트워킹▼aSDN 보안▼a데이터 불일치-
dc.titleData inconsistency attack and defense in software-defined networking-
dc.title.alternative소프트웨어 정의 네트워킹에서의 데이터 불일치 공격 및 방어 연구-
dc.typeThesis(Master)-
dc.identifier.CNRN325007-
dc.description.department한국과학기술원 :정보보호대학원,-
dc.contributor.alternativeauthor우승원-
Appears in Collection
IS-Theses_Master(석사논문)
Files in This Item
There are no files associated with this item.

qr_code

  • mendeley

    citeulike


rss_1.0 rss_2.0 atom_1.0