Research on software-defined network and the security defense technology

Software-defined network (SDN) separated the traditional control plane from the data plane,formed a centralized controller,opened up the network programming interface,simplified network management,promoted network innovation and optimized network operation.However,SDN's “three-layer two-interfa...

Full description

Saved in:
Bibliographic Details
Main Authors: Tao WANG, Hong-chang CHEN, Guo-zhen CHENG
Format: Article
Language:zho
Published: Editorial Department of Journal on Communications 2017-11-01
Series:Tongxin xuebao
Subjects:
Online Access:http://www.joconline.com.cn/zh/article/doi/10.11959/j.issn.1000-436x.2017221/
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1841539490409086976
author Tao WANG
Hong-chang CHEN
Guo-zhen CHENG
author_facet Tao WANG
Hong-chang CHEN
Guo-zhen CHENG
author_sort Tao WANG
collection DOAJ
description Software-defined network (SDN) separated the traditional control plane from the data plane,formed a centralized controller,opened up the network programming interface,simplified network management,promoted network innovation and optimized network operation.However,SDN's “three-layer two-interface” architecture increased the network attack surface,resulting in many new security issues.The development,characteristics and working principle of SDN were first introduced,and the existing security problems from the application layer,the northbound interface,the control plane,the southbound interface,the data plane were summarized respectively.Secondly,the latest research progress and existing solutions were discussed.Finally,SDN current and future security challenges were summarized,and the future SDN security development direction was looked forward to.
format Article
id doaj-art-3171b074942f4bad83718c42f927c395
institution Kabale University
issn 1000-436X
language zho
publishDate 2017-11-01
publisher Editorial Department of Journal on Communications
record_format Article
series Tongxin xuebao
spelling doaj-art-3171b074942f4bad83718c42f927c3952025-01-14T07:13:22ZzhoEditorial Department of Journal on CommunicationsTongxin xuebao1000-436X2017-11-013813316059713424Research on software-defined network and the security defense technologyTao WANGHong-chang CHENGuo-zhen CHENGSoftware-defined network (SDN) separated the traditional control plane from the data plane,formed a centralized controller,opened up the network programming interface,simplified network management,promoted network innovation and optimized network operation.However,SDN's “three-layer two-interface” architecture increased the network attack surface,resulting in many new security issues.The development,characteristics and working principle of SDN were first introduced,and the existing security problems from the application layer,the northbound interface,the control plane,the southbound interface,the data plane were summarized respectively.Secondly,the latest research progress and existing solutions were discussed.Finally,SDN current and future security challenges were summarized,and the future SDN security development direction was looked forward to.http://www.joconline.com.cn/zh/article/doi/10.11959/j.issn.1000-436x.2017221/SDNOpenFlownetwork securitySDN security
spellingShingle Tao WANG
Hong-chang CHEN
Guo-zhen CHENG
Research on software-defined network and the security defense technology
Tongxin xuebao
SDN
OpenFlow
network security
SDN security
title Research on software-defined network and the security defense technology
title_full Research on software-defined network and the security defense technology
title_fullStr Research on software-defined network and the security defense technology
title_full_unstemmed Research on software-defined network and the security defense technology
title_short Research on software-defined network and the security defense technology
title_sort research on software defined network and the security defense technology
topic SDN
OpenFlow
network security
SDN security
url http://www.joconline.com.cn/zh/article/doi/10.11959/j.issn.1000-436x.2017221/
work_keys_str_mv AT taowang researchonsoftwaredefinednetworkandthesecuritydefensetechnology
AT hongchangchen researchonsoftwaredefinednetworkandthesecuritydefensetechnology
AT guozhencheng researchonsoftwaredefinednetworkandthesecuritydefensetechnology