A Survey on Security-Aware Measurement in SDN

Software-defined networking (SDN) is one of the most prevailing networking paradigms in current and next-generation networks. Basically, the highly featured separation of control and data planes makes SDN a proper solution towards many practical problems that challenge legacy networks, for example,...

Full description

Bibliographic Details
Main Authors: Heng Zhang, Zhiping Cai, Qiang Liu, Qingjun Xiao, Yangyang Li, Chak Fone Cheang
Format: Article
Language:English
Published: Hindawi-Wiley 2018-01-01
Series:Security and Communication Networks
Online Access:http://dx.doi.org/10.1155/2018/2459154
id doaj-4cce14a913af428eb72d6e839968aa8f
record_format Article
spelling doaj-4cce14a913af428eb72d6e839968aa8f2020-11-25T00:30:17ZengHindawi-WileySecurity and Communication Networks1939-01141939-01222018-01-01201810.1155/2018/24591542459154A Survey on Security-Aware Measurement in SDNHeng Zhang0Zhiping Cai1Qiang Liu2Qingjun Xiao3Yangyang Li4Chak Fone Cheang5College of Computer, National University of Defense Technology, Changsha, Hunan 410073, ChinaCollege of Computer, National University of Defense Technology, Changsha, Hunan 410073, ChinaCollege of Computer, National University of Defense Technology, Changsha, Hunan 410073, ChinaSchool of Computer Science and Engineering, Southeast University, Nanjing, Jiangsu 211189, ChinaInnovation Center, China Academy of Electronics and Information Technology, Beijing 100041, ChinaFaculty of Information Technology, Macau University of Science and Technology, MacauSoftware-defined networking (SDN) is one of the most prevailing networking paradigms in current and next-generation networks. Basically, the highly featured separation of control and data planes makes SDN a proper solution towards many practical problems that challenge legacy networks, for example, energy efficiency, dynamic network configuration, agile network measurement, and flexible network deployment. Although the SDN and its applications have been extensively studied for several years, the research of SDN security is still in its infancy. Typically, the SDN suffers from architecture defect and OpenFlow protocol loopholes such as single controller problem, deficiency of communication verification, and network resources constraint. Hence, network measurement is a fundamental technique of protecting SDN against the above security threats. Specifically, network measurement aims to understand and quantify a variety of network behaviors to facilitate network management and monitoring, anomaly detection, network troubleshooting, and the establishment of security mechanisms. In this paper, we present a systematic survey on security-aware measurement technology in SDN. In particular, we first review the basic architecture of SDN and corresponding security challenges. Then, we investigate two performance measurement techniques in SDN, namely, link latency and available bandwidth measurements. After that, we further provide a general overview of topology measurement in SDN including intradomain and interdomain topology discovering techniques. Finally, we list three interesting future directions of security-aware measurement in SDN followed by giving conclusion remarks.http://dx.doi.org/10.1155/2018/2459154
collection DOAJ
language English
format Article
sources DOAJ
author Heng Zhang
Zhiping Cai
Qiang Liu
Qingjun Xiao
Yangyang Li
Chak Fone Cheang
spellingShingle Heng Zhang
Zhiping Cai
Qiang Liu
Qingjun Xiao
Yangyang Li
Chak Fone Cheang
A Survey on Security-Aware Measurement in SDN
Security and Communication Networks
author_facet Heng Zhang
Zhiping Cai
Qiang Liu
Qingjun Xiao
Yangyang Li
Chak Fone Cheang
author_sort Heng Zhang
title A Survey on Security-Aware Measurement in SDN
title_short A Survey on Security-Aware Measurement in SDN
title_full A Survey on Security-Aware Measurement in SDN
title_fullStr A Survey on Security-Aware Measurement in SDN
title_full_unstemmed A Survey on Security-Aware Measurement in SDN
title_sort survey on security-aware measurement in sdn
publisher Hindawi-Wiley
series Security and Communication Networks
issn 1939-0114
1939-0122
publishDate 2018-01-01
description Software-defined networking (SDN) is one of the most prevailing networking paradigms in current and next-generation networks. Basically, the highly featured separation of control and data planes makes SDN a proper solution towards many practical problems that challenge legacy networks, for example, energy efficiency, dynamic network configuration, agile network measurement, and flexible network deployment. Although the SDN and its applications have been extensively studied for several years, the research of SDN security is still in its infancy. Typically, the SDN suffers from architecture defect and OpenFlow protocol loopholes such as single controller problem, deficiency of communication verification, and network resources constraint. Hence, network measurement is a fundamental technique of protecting SDN against the above security threats. Specifically, network measurement aims to understand and quantify a variety of network behaviors to facilitate network management and monitoring, anomaly detection, network troubleshooting, and the establishment of security mechanisms. In this paper, we present a systematic survey on security-aware measurement technology in SDN. In particular, we first review the basic architecture of SDN and corresponding security challenges. Then, we investigate two performance measurement techniques in SDN, namely, link latency and available bandwidth measurements. After that, we further provide a general overview of topology measurement in SDN including intradomain and interdomain topology discovering techniques. Finally, we list three interesting future directions of security-aware measurement in SDN followed by giving conclusion remarks.
url http://dx.doi.org/10.1155/2018/2459154
work_keys_str_mv AT hengzhang asurveyonsecurityawaremeasurementinsdn
AT zhipingcai asurveyonsecurityawaremeasurementinsdn
AT qiangliu asurveyonsecurityawaremeasurementinsdn
AT qingjunxiao asurveyonsecurityawaremeasurementinsdn
AT yangyangli asurveyonsecurityawaremeasurementinsdn
AT chakfonecheang asurveyonsecurityawaremeasurementinsdn
AT hengzhang surveyonsecurityawaremeasurementinsdn
AT zhipingcai surveyonsecurityawaremeasurementinsdn
AT qiangliu surveyonsecurityawaremeasurementinsdn
AT qingjunxiao surveyonsecurityawaremeasurementinsdn
AT yangyangli surveyonsecurityawaremeasurementinsdn
AT chakfonecheang surveyonsecurityawaremeasurementinsdn
_version_ 1725327586834251776