Skip to content
Research Article Open access CC BY 4.0

Dual-layer SDN Model for Deploying and Securing Network Forensic in Distributed Data Center

Aymen Hasan Rashid Al Awadi

Current Journal of Applied Science and Technology · pp. 1–11 · Published 20 Jul 2017

10.9734/CJAST/2017/34752

Abstract

Many data centers nowadays begin to switch to SDN (Software-Defined Networking), to gain the main features like predictability, centralized management, quality of service and enhanced security. Comparing with traditional networks, SDN provides the ability to separate the control plane from the data plane with variety of protocols and functionalities like OpenFlow. Therefore, SDN reveals new opportunities to build large, complex and scalable networks using various network applications and services. As for network security and forensic aspects, the centralized control plane presented by SDN enhances the process of monitoring and analysis of network traffic to find the potential threats. However, it is so difficult to diagnose the cause of malevolent behaviors in large network with various services, communications, applications and protocols, without systematic model to investigate for the attacks that could happen in the data center. In this paper, we present new insight for the current trends in the aspect of SDN attacks and faults in distributed data centers in addition to the forensic challenges that have not been addressed yet. To diagnose such issues, we proposed an SDN prototype model based on the proven Provenance Verification Point (PVP) and expanded it to work in widely distributed data centers. The proposed prototype deployed as a centralized forensic middlebox working on collecting information and logs from the control and infrastructure layer of the SDN topology to find the root cause of the malicious attacks.

Software-defined networking forensics Provenance Verification Point (PVP) data center

Cited by 4

Oddlab: fault-tolerant aware load-balancing framework for data center networks

Aymen Hasan Alawadi, Sándor Molnár · Annals of Telecommunications · 2021

Impact of Virtual Networks on Anomaly Detection with Machine Learning

Daniel Spiekermann, Jorg Keller · 2020 6th IEEE Conference on Network Softwarization (NetSoft) · 2020

Unsupervised packet-based anomaly detection in virtual networks

Daniel Spiekermann, Jörg Keller · Computer Networks · 2021

Software-Defined Multi-domain Tactical Networks: Foundations and Future Directions

Redowan Mahmud, Adel N. Toosi, Maria Alejandra Rodriguez · Mobile Edge Computing · 2021

Article metrics

Real usage data collected on this platform.

0

Page views

0

PDF downloads

0

Outbound clicks

4

Citations

Views by country

Approximate, from request IP at view time — not citizenship or institution. Countries with fewer than 5 views are grouped as "Other".

No views recorded yet.

Traffic sources

Referring site, by host.

No traffic recorded yet.

Views and downloads exclude known bots/crawlers. Citations combines this platform's own DOI-resolved index with each external source's own reported total — see Cited by above for individually listed citing works. Last refreshed 0 seconds ago.