期刊文献+
共找到897篇文章
< 1 2 45 >
每页显示 20 50 100
Blockchain-Based Secure Distributed Control for Software Defined Optical Networking 被引量:5
1
作者 Hui Yang Yongshen Liang +3 位作者 Qiuyan Yao Shaoyong Guo Ao Yu Jie Zhang 《China Communications》 SCIE CSCD 2019年第6期42-54,共13页
Software defined optical networking(SDON)is a critical technology for the next generation network with the advantages of programmable control and etc.As one of the key issues of SDON,the security of control plane has ... Software defined optical networking(SDON)is a critical technology for the next generation network with the advantages of programmable control and etc.As one of the key issues of SDON,the security of control plane has also received extensive attention,especially in certain network scenarios with high security requirement.Due to the existence of vulnerabilities and heavy overhead,the existing firewalls and distributed control technologies cannot solve the control plane security problem well.In this paper,we propose a distributed control architecture for SDON using the blockchain technique(BlockCtrl).The proposed BlockCtrl model introduces the advantages of blockchain into SDON to achieve a high-efficiency fault tolerant control.We have evaluated the performance of our proposed architecture and compared it to the existing models with respect to various metrics including processing rate,recovery latency and etc.The numerical results show that the BlockCtrl is capable of attacks detection and fault tolerant control in SDON with high performance on resource utilization and service correlation. 展开更多
关键词 blockchain FAULT TOLERANT control network SECURITY software defined networkING
在线阅读 下载PDF
Dynamic Threshold-Based Approach to Detect Low-Rate DDoS Attacks on Software-Defined Networking Controller 被引量:1
2
作者 Mohammad Adnan Aladaileh Mohammed Anbar +2 位作者 Iznan H.Hasbullah Abdullah Ahmed Bahashwan Shadi Al-Sarawn 《Computers, Materials & Continua》 SCIE EI 2022年第10期1403-1416,共14页
The emergence of a new network architecture,known as Software Defined Networking(SDN),in the last two decades has overcome some drawbacks of traditional networks in terms of performance,scalability,reliability,securit... The emergence of a new network architecture,known as Software Defined Networking(SDN),in the last two decades has overcome some drawbacks of traditional networks in terms of performance,scalability,reliability,security,and network management.However,the SDN is vulnerable to security threats that target its controller,such as low-rate Distributed Denial of Service(DDoS)attacks,The low-rate DDoS attack is one of the most prevalent attacks that poses a severe threat to SDN network security because the controller is a vital architecture component.Therefore,there is an urgent need to propose a detection approach for this type of attack with a high detection rate and low false-positive rates.Thus,this paper proposes an approach to detect low-rate DDoS attacks on the SDN controller by adapting a dynamic threshold.The proposed approach has been evaluated using four simulation scenarios covering a combination of low-rate DDoS attacks against the SDN controller involving(i)a single host attack targeting a single victim;(ii)a single host attack targeting multiple victims;(iii)multiple hosts attack targeting a single victim;and(iv)multiple hosts attack targeting multiple victims.The proposed approach’s average detection rates are 96.65%,91.83%,96.17%,and 95.33%for the above scenarios,respectively;and its average false-positive rates are 3.33%,8.17%,3.83%,and 4.67%for similar scenarios,respectively.The comparison between the proposed approach and two existing approaches showed that it outperformed them in both categories. 展开更多
关键词 Attack detection controlLER dynamic threshold entropy algorithm distributed denial of service software defined networking static threshold
在线阅读 下载PDF
Joint Resource Allocation and Admission Control Mechanism in Software Defined Mobile Networks
3
作者 Geng Chen Yueyue Zhang +1 位作者 Yunchi Shi Qingtian Zeng 《China Communications》 SCIE CSCD 2019年第5期33-45,共13页
This paper presented a joint resource allocation(RA) and admission control(AC) mechanism in software defined mobile networks(SDMNs). In this mechanism, the joint RA and AC problem can be formulated as an optimization ... This paper presented a joint resource allocation(RA) and admission control(AC) mechanism in software defined mobile networks(SDMNs). In this mechanism, the joint RA and AC problem can be formulated as an optimization problem with the aim of maximizing the number of admitted users while simultaneously minimizing the number of allocated channels. Since the primal problem is modeled to be a mixed integer nonlinear problem(MINLP), we attain the suboptimal solutions to the primal MINLP by convex relaxation. Additionally, with the global information collected by the SDMNs controller, a centralized joint RA and AC(CJRA)algorithm is proposed by the Lagrange dual decomposition technique to obtain the global optimum. Meanwhile, we propose an OpenFlow rules placement strategy to realize CJRA in an efficient way. Moreover, a distributed algorithm is also developed to find the local optimum, showing a performance benchmark for the centralized one. Finally, simulation results show that the proposed centralized algorithm admits more users compared with the distributed. 展开更多
关键词 CENTRALIZED algorithm JOINT resource ALLOCATION and ADMISSION control OpenFlow software defined mobile networks(SDMNs)
在线阅读 下载PDF
Open-Source Software Defined Networking Controllers:State-of-the-Art,Challenges and Solutions for Future Network Providers
4
作者 Johari Abdul Rahim Rosdiadee Nordin Oluwatosin Ahmed Amodu 《Computers, Materials & Continua》 SCIE EI 2024年第7期747-800,共54页
Software Defined Networking(SDN)is programmable by separation of forwarding control through the centralization of the controller.The controller plays the role of the‘brain’that dictates the intelligent part of SDN t... Software Defined Networking(SDN)is programmable by separation of forwarding control through the centralization of the controller.The controller plays the role of the‘brain’that dictates the intelligent part of SDN technology.Various versions of SDN controllers exist as a response to the diverse demands and functions expected of them.There are several SDN controllers available in the open market besides a large number of commercial controllers;some are developed tomeet carrier-grade service levels and one of the recent trends in open-source SDN controllers is the Open Network Operating System(ONOS).This paper presents a comparative study between open source SDN controllers,which are known as Network Controller Platform(NOX),Python-based Network Controller(POX),component-based SDN framework(Ryu),Java-based OpenFlow controller(Floodlight),OpenDayLight(ODL)and ONOS.The discussion is further extended into ONOS architecture,as well as,the evolution of ONOS controllers.This article will review use cases based on ONOS controllers in several application deployments.Moreover,the opportunities and challenges of open source SDN controllers will be discussed,exploring carriergrade ONOS for future real-world deployments,ONOS unique features and identifying the suitable choice of SDN controller for service providers.In addition,we attempt to provide answers to several critical questions relating to the implications of the open-source nature of SDN controllers regarding vendor lock-in,interoperability,and standards compliance,Similarly,real-world use cases of organizations using open-source SDN are highlighted and how the open-source community contributes to the development of SDN controllers.Furthermore,challenges faced by open-source projects,and considerations when choosing an open-source SDN controller are underscored.Then the role of Artificial Intelligence(AI)and Machine Learning(ML)in the evolution of open-source SDN controllers in light of recent research is indicated.In addition,the challenges and limitations associated with deploying open-source SDN controllers in production networks,how can they be mitigated,and finally how opensource SDN controllers handle network security and ensure that network configurations and policies are robust and resilient are presented.Potential opportunities and challenges for future Open SDN deployment are outlined to conclude the article. 展开更多
关键词 ONOS open source software sdn software defined networking
在线阅读 下载PDF
Threshold-Based Software-Defined Networking(SDN)Solution for Healthcare Systems against Intrusion Attacks
5
作者 Laila M.Halman Mohammed J.F.Alenazi 《Computer Modeling in Engineering & Sciences》 SCIE EI 2024年第2期1469-1483,共15页
The healthcare sector holds valuable and sensitive data.The amount of this data and the need to handle,exchange,and protect it,has been increasing at a fast pace.Due to their nature,software-defined networks(SDNs)are ... The healthcare sector holds valuable and sensitive data.The amount of this data and the need to handle,exchange,and protect it,has been increasing at a fast pace.Due to their nature,software-defined networks(SDNs)are widely used in healthcare systems,as they ensure effective resource utilization,safety,great network management,and monitoring.In this sector,due to the value of thedata,SDNs faceamajor challengeposed byawide range of attacks,such as distributed denial of service(DDoS)and probe attacks.These attacks reduce network performance,causing the degradation of different key performance indicators(KPIs)or,in the worst cases,a network failure which can threaten human lives.This can be significant,especially with the current expansion of portable healthcare that supports mobile and wireless devices for what is called mobile health,or m-health.In this study,we examine the effectiveness of using SDNs for defense against DDoS,as well as their effects on different network KPIs under various scenarios.We propose a threshold-based DDoS classifier(TBDC)technique to classify DDoS attacks in healthcare SDNs,aiming to block traffic considered a hazard in the form of a DDoS attack.We then evaluate the accuracy and performance of the proposed TBDC approach.Our technique shows outstanding performance,increasing the mean throughput by 190.3%,reducing the mean delay by 95%,and reducing packet loss by 99.7%relative to normal,with DDoS attack traffic. 展开更多
关键词 network resilience network management attack prediction software defined networking(sdn) distributed denial of service(DDoS) healthcare
在线阅读 下载PDF
Deployment Strategy for Multiple Controllers Based on the Aviation On-Board Software-Defined Data Link Network
6
作者 Yuting Zhu Yanfang Fu +3 位作者 Yang Ce Pan Deng Jianpeng Zhu Huankun Su 《Computers, Materials & Continua》 SCIE EI 2023年第12期3867-3894,共28页
In light of the escalating demand and intricacy of services in contemporary terrestrial,maritime,and aerial combat operations,there is a compelling need for enhanced service quality and efficiency in airborne cluster ... In light of the escalating demand and intricacy of services in contemporary terrestrial,maritime,and aerial combat operations,there is a compelling need for enhanced service quality and efficiency in airborne cluster communication networks.Software-Defined Networking(SDN)proffers a viable solution for the multifaceted task of cooperative communication transmission and management across different operational domains within complex combat contexts,due to its intrinsic ability to flexibly allocate and centrally administer network resources.This study pivots around the optimization of SDN controller deployment within airborne data link clusters.A collaborative multi-controller architecture predicated on airborne data link clusters is thus proposed.Within this architectural framework,the controller deployment issue is reframed as a two-fold problem:subdomain partition-ing and central interaction node selection.We advocate a subdomain segmentation approach grounded in node value ranking(NDVR)and a central interaction node selection methodology predicated on an enhanced Artificial Fish Swarm Algorithm(AFSA).The advanced NDVR-AFSA(Node value ranking-Improved artificial fish swarm algorithm)algorithm makes use of a chaos algorithm for population initialization,boosting population diversity and circumventing premature algorithm convergence.By the integration of adaptive strategies and incorporation of the genetic algorithm’s crossover and mutation operations,the algorithm’s search range adaptability is enhanced,thereby increasing the possibility of obtaining globally optimal solutions,while concurrently augmenting cluster reliability.The simulation results verify the advantages of the NDVR-IAFSA algorithm,achieve a better load balancing effect,improve the reliability of aviation data link cluster,and significantly reduce the average propagation delay and disconnection rate,respectively,by 12.8%and 11.7%.This shows that the optimization scheme has important significance in practical application,and can meet the high requirements of modern sea,land,and air operations to aviation airborne communication networks. 展开更多
关键词 Aviation cluster software defined network controller deployment Airborne network data link
在线阅读 下载PDF
MGOKA:A Multi-Objective Optimization Algorithm for Controller Placement Problem Combining Network Partition with Cluster Fusion in Software Defined Network
7
作者 CHEN Jue XIAO Changwei +1 位作者 QIU Xihe LÜ Wenjing 《Wuhan University Journal of Natural Sciences》 CSCD 2024年第6期589-599,共11页
Software Defined Network(SDN)has been developed rapidly in technology and popularized in application due to its efficiency and flexibility in network management.In multi-controller SDN architecture,the Controller Plac... Software Defined Network(SDN)has been developed rapidly in technology and popularized in application due to its efficiency and flexibility in network management.In multi-controller SDN architecture,the Controller Placement Problem(CPP)must be solved carefully as it directly affects the whole network performance.This paper proposes a Multi-objective Greedy Optimized K-means Algorithm(MGOKA)to solve this problem to optimize worst-case and average delay between switches and controllers as well as synchronization delay and load balance among controllers for Wide Area Networks(WAN).MGOKA combines the process of network partition based on the K-means algorithm with cluster fusion based on the greedy algorithm and designs a normalization strategy to convert a multi-objective into a single-objective optimization problem.The simulation results depict that in different network scales with different numbers of controllers,the relative optimization rate of our proposed algorithm compared with K-means,K-means++,and GOKA can reach up to 101.5%,109.9%,and 79.8%,respectively.Moreover,the error rate between MGOKA and the global optimal solution is always less than 4%. 展开更多
关键词 software defined network controller Placement Problem propagation delay load balance multi-objective optimization
原文传递
Using Heuristics to the Controller Placement Problem in Software-Defined Multihop Wireless Networking
8
作者 Afsane Zahmatkesh Chung-Horng Lung 《Communications and Network》 2020年第4期199-219,共21页
Solving the controller placement problem (CPP) in an SDN architecture with multiple controllers has a significant impact on control overhead in the network, especially in multihop wireless networks (MWNs). The generat... Solving the controller placement problem (CPP) in an SDN architecture with multiple controllers has a significant impact on control overhead in the network, especially in multihop wireless networks (MWNs). The generated control overhead consists of controller-device and inter-controller communications to discover the network topology, exchange configurations, and set up and modify flow tables in the control plane. However, due to the high complexity of the proposed optimization model to the CPP, heuristic algorithms have been reported to find near-optimal solutions faster for large-scale wired networks. In this paper, the objective is to extend those existing heuristic algorithms to solve a proposed optimization model to the CPP in software-<span>defined multihop wireless networking</span><span> (SDMWN).</span>Our results demonstrate that using ranking degrees assigned to the possible controller placements, including the average distance to other devices as a degree or the connectivity degree of each placement, the extended heuristic algorithms are able to achieve the optimal solution in small-scale networks in terms of the generated control overhead and the number of controllers selected in the network. As a result, using extended heuristic algorithms, the average number of hops among devices and their assigned controllers as well as among controllers will be reduced. Moreover, these algorithms are able tolower<span "=""> </span>the control overhead in large-scale networks and select fewer controllers compared to an extended algorithm that solves the CPP in SDMWN based on a randomly selected controller placement approach. 展开更多
关键词 software-defined Multihop Wireless networking (SDMWN) controller Placement Problem (CPP) control Overhead Heuristic Algorithms
在线阅读 下载PDF
无线局域网接入拥塞问题及基于SDN流量调度的应对策略研究
9
作者 李学善 《通信电源技术》 2026年第3期216-218,共3页
为解决高密度无线局域网中接入拥塞、资源失衡及流量混传导致的性能瓶颈问题,从接入层面、资源层面及流量层面分析无线局域网接入拥塞问题,并从3个层面提出基于软件定义网络(Software Defined Network,SDN)流量调度的应对策略。实践案... 为解决高密度无线局域网中接入拥塞、资源失衡及流量混传导致的性能瓶颈问题,从接入层面、资源层面及流量层面分析无线局域网接入拥塞问题,并从3个层面提出基于软件定义网络(Software Defined Network,SDN)流量调度的应对策略。实践案例验证了该策略在提升网络吞吐量、降低传输时延方面具有明显成效。 展开更多
关键词 无线局域网 接入拥塞 软件定义网络(sdn)
在线阅读 下载PDF
Software defined satellite networks:A survey 被引量:10
10
作者 Weiwei Jiang 《Digital Communications and Networks》 SCIE CSCD 2023年第6期1243-1264,共22页
In recent years,satellite networks have been proposed as an essential part of next-generation mobile communication systems.Software defined networking techniques are introduced in satellite networks to handle the grow... In recent years,satellite networks have been proposed as an essential part of next-generation mobile communication systems.Software defined networking techniques are introduced in satellite networks to handle the growing challenges induced by time-varying topology,intermittent inter-satellite link and dramatically increased satellite constellation size.This survey covers the latest progress of software defined satellite networks,including key techniques,existing solutions,challenges,opportunities,and simulation tools.To the best of our knowledge,this paper is the most comprehensive survey that covers the latest progress of software defined satellite networks.An open GitHub repository is further created where the latest papers on this topic will be tracked and updated periodically.Compared with these existing surveys,this survey contributes from three aspects:(1)an up-to-date SDN-oriented review for the latest progress of key techniques and solutions in software defined satellite networks;(2)an inspiring summary of existing challenges,new research opportunities and publicly available simulation tools for follow-up studies;(3)an effort of building a public repository to track new results. 展开更多
关键词 Mobility management Satellite network sdn controller placement software defined networking Virtual network embedding
在线阅读 下载PDF
A Methodology for Reliability of WSN Based on Software Defined Network in Adaptive Industrial Environment 被引量:7
11
作者 Ying Duan Wenfeng Li +2 位作者 Xiuwen Fu Yun Luo Lin Yang 《IEEE/CAA Journal of Automatica Sinica》 SCIE EI CSCD 2018年第1期74-82,共9页
As communication technology and smart manufacturing have developed, the industrial internet of things(IIo T)has gained considerable attention from academia and industry.Wireless sensor networks(WSNs) have many advanta... As communication technology and smart manufacturing have developed, the industrial internet of things(IIo T)has gained considerable attention from academia and industry.Wireless sensor networks(WSNs) have many advantages with broad applications in many areas including environmental monitoring, which makes it a very important part of IIo T. However,energy depletion and hardware malfunctions can lead to node failures in WSNs. The industrial environment can also impact the wireless channel transmission, leading to network reliability problems, even with tightly coupled control and data planes in traditional networks, which obviously also enhances network management cost and complexity. In this paper, we introduce a new software defined network(SDN), and modify this network to propose a framework called the improved software defined wireless sensor network(improved SD-WSN). This proposed framework can address the following issues. 1) For a large scale heterogeneous network, it solves the problem of network management and smooth merging of a WSN into IIo T. 2) The network coverage problem is solved which improves the network reliability. 3) The framework addresses node failure due to various problems, particularly related to energy consumption.Therefore, it is necessary to improve the reliability of wireless sensor networks, by developing certain schemes to reduce energy consumption and the delay time of network nodes under IIo T conditions. Experiments have shown that the improved approach significantly reduces the energy consumption of nodes and the delay time, thus improving the reliability of WSN. 展开更多
关键词 Industrial internet of things(IIo T) RELIABILITY software defined network(sdn) wireless sensor network(WSN)
在线阅读 下载PDF
EARS: Intelligence-Driven Experiential Network Architecture for Automatic Routing in Software-Defined Networking 被引量:8
12
作者 Yuxiang Hu Ziyong Li +2 位作者 Julong Lan Jiangxing Wu Lan Yao 《China Communications》 SCIE CSCD 2020年第2期149-162,共14页
Software-Defined Networking(SDN)adapts logically-centralized control by decoupling control plane from data plane and provides the efficient use of network resources.However,due to the limitation of traditional routing... Software-Defined Networking(SDN)adapts logically-centralized control by decoupling control plane from data plane and provides the efficient use of network resources.However,due to the limitation of traditional routing strategies relying on manual configuration,SDN may suffer from link congestion and inefficient bandwidth allocation among flows,which could degrade network performance significantly.In this paper,we propose EARS,an intelligence-driven experiential network architecture for automatic routing.EARS adapts deep reinforcement learning(DRL)to simulate the human methods of learning experiential knowledge,employs the closed-loop network control mechanism incorporating with network monitoring technologies to realize the interaction with network environment.The proposed EARS can learn to make better control decision from its own experience by interacting with network environment and optimize the network intelligently by adjusting services and resources offered based on network requirements and environmental conditions.Under the network architecture,we design the network utility function with throughput and delay awareness,differentiate flows based on their size characteristics,and design a DDPGbased automatic routing algorithm as DRL decision brain to find the near-optimal paths for mice and elephant flows.To validate the network architecture,we implement it on a real network environment.Extensive simulation results show that EARS significantly improve the network throughput and reduces the average packet delay in comparison with baseline schemes(e.g.OSPF,ECMP). 展开更多
关键词 software-defined networking(sdn) intelligence-driven experiential network deep reinforcement learning(DRL) automatic routing
在线阅读 下载PDF
DDoS Attack in Software Defined Networks: A Survey 被引量:1
13
作者 XU Xiaoqiong YU Hongfang YANG Kun 《ZTE Communications》 2017年第3期13-19,共7页
Distributed Denial of Service(DDoS) attacks have been one of the most destructive threats to Internet security. By decoupling the network control and data plane, software defined networking(SDN) offers a flexible netw... Distributed Denial of Service(DDoS) attacks have been one of the most destructive threats to Internet security. By decoupling the network control and data plane, software defined networking(SDN) offers a flexible network management paradigm to solve DDoS attack in traditional networks. However, the centralized nature of SDN is also a potential vulnerability for DDo S attack. In this paper, we first provide some SDN-supported mechanisms against DDoS attack in traditional networks. A systematic review of various SDN-self DDo S threats are then presented as well as the existing literatures on quickly DDoS detection and defense in SDN. Finally, some promising research directions in this field are introduced. 展开更多
关键词 software defined networks sdn security DDOS detection method defense mechanism
在线阅读 下载PDF
面向SDN流表多模态感知与DRL协同防御DDoS方法
14
作者 徐泽鹏 舒兆港 +2 位作者 陈淑武 涂强 庄涛 《计算机应用研究》 北大核心 2026年第2期596-603,共8页
软件定义网络(SDN)的集中化控制架构在提升管理效率的同时,面临分布式拒绝服务(DDoS)攻击风险。针对传统检测方法难以应对大规模动态流量中的隐蔽攻击行为,且易误封短时高并发正常流量的问题,提出一种基于多模态深度强化学习的DDoS防御... 软件定义网络(SDN)的集中化控制架构在提升管理效率的同时,面临分布式拒绝服务(DDoS)攻击风险。针对传统检测方法难以应对大规模动态流量中的隐蔽攻击行为,且易误封短时高并发正常流量的问题,提出一种基于多模态深度强化学习的DDoS防御系统。该系统通过融合时空特征解耦与智能决策优化,实现检测精度与资源效率的动态平衡,在资源充足时最大程度规避对非攻击流量的拒绝服务。实验结果显示,其攻击检测准确率平均达99.61%,误封率最高不超过0.5%,在保证高准确率的前提下降低了合法流量误封,实现了防御过程对网络服务质量的保障。 展开更多
关键词 软件定义网络 分布式拒绝服务攻击 对抗深度强化学习网络 张量分解
在线阅读 下载PDF
医院云计算安全防护中基于SDN架构的网络安全平台建设应用
15
作者 王弢 金蕾 《医学信息学杂志》 2026年第1期90-93,F0003,共5页
目的/意义建设基于软件定义网络(software defined networking,SDN)架构的网络安全平台,以增强医院云计算安全防护。方法/过程基于SDN架构构建网络安全平台,并与入侵检测系统联动形成主动防御系统。对比分析平台应用前后租户横向攻击数... 目的/意义建设基于软件定义网络(software defined networking,SDN)架构的网络安全平台,以增强医院云计算安全防护。方法/过程基于SDN架构构建网络安全平台,并与入侵检测系统联动形成主动防御系统。对比分析平台应用前后租户横向攻击数量、攻击成功率、策略无阻断业务数、勒索软件加密数据量和安全团队操作工时等指标,验证平台的有效性。结果/结论基于SDN架构的网络安全平台可有效识别并阻断恶意流量,增强对医院云计算的安全防护。 展开更多
关键词 软件定义网络 网络安全平台 医院 云计算 安全防护
暂未订购
A New Dataset for Network Flooding Attacks in SDN-Based IoT Environments
16
作者 Nader Karmous Wadii Jlassi +2 位作者 Mohamed Ould-Elhassen Aoueileyine Imen Filali Ridha Bouallegue 《Computer Modeling in Engineering & Sciences》 2025年第12期4363-4393,共31页
This paper introduces a robust Distributed Denial-of-Service attack detection framework tailored for Software-Defined Networking based Internet of Things environments,built upon a novel,syntheticmulti-vector dataset g... This paper introduces a robust Distributed Denial-of-Service attack detection framework tailored for Software-Defined Networking based Internet of Things environments,built upon a novel,syntheticmulti-vector dataset generated in a Mininet-Ryu testbed using real-time flow-based labeling.The proposed model is based on the XGBoost algorithm,optimized with Principal Component Analysis for dimensionality reduction,utilizing lightweight flowlevel features extracted from Open Flow statistics to classify attacks across critical IoT protocols including TCP,UDP,HTTP,MQTT,and CoAP.The model employs lightweight flow-level features extracted from Open Flow statistics to ensure low computational overhead and fast processing.Performance was rigorously evaluated using key metrics,including Accuracy,Precision,Recall,F1-Score,False Alarm Rate,AUC-ROC,and Detection Time.Experimental results demonstrate the model’s high performance,achieving an accuracy of 98.93%and a low FAR of 0.86%,with a rapid median detection time of 1.02 s.This efficiency validates its superiority in meeting critical Key Performance Indicators,such as Latency and high Throughput,necessary for time-sensitive SDN-IoT systems.Furthermore,the model’s robustness and statistically significant outperformance against baseline models such as Random Forest,k-Nearest Neighbors,and Gradient Boosting Machine,validating through statistical tests using Wilcoxon signed-rank test and confirmed via successful deployment in a real SDN testbed for live traffic detection and mitigation. 展开更多
关键词 CYBERSECURITY sdn IOT ML AI DATASET software defined networking FLOODING DDOS attacks THREAT Wilcoxon
在线阅读 下载PDF
ForSA — A New Software Defined Network Architecture Based on ForCES
17
作者 LI Chuanhuang CEN Lijie +3 位作者 GONG Liang WANG Weiming JIN Rong LAN Julong 《China Communications》 SCIE CSCD 2016年第S1期16-31,共16页
In recent years, SDN(Software Defined Network) as a new network architecture has become the hot research point. Meanwhile,the well-known Open Flow-based SDN got a lot of attention. But it can't provide a flexible ... In recent years, SDN(Software Defined Network) as a new network architecture has become the hot research point. Meanwhile,the well-known Open Flow-based SDN got a lot of attention. But it can't provide a flexible and effective network resource description method.As an open programmable technology, For CES(Forwarding and Control Element Separation)has also been concerned. However, For CES is confined within a single network node and cannot be applied to the entire network. This paper proposes a new architecture — ForS A(ForC ESbased SDN architecture). The architecture is added a configuration layer based on the traditional SDN architecture, which solves the problem that the northbound interface is not clear between the application layer and the control layer in the SDN architecture. ForS A also implements the compatibility within various forwarding devices in the forwarding layer. 展开更多
关键词 software defined network FORCES sdn ARCHITECTURE
在线阅读 下载PDF
一种基于零信任的SDN访问控制架构
18
作者 梁赓 韩培胜 赵世海 《软件导刊》 2026年第3期157-164,共8页
针对软件定义网络(SDN)缺乏有效认证方式与持续访问控制能力的问题,提出一种基于零信任的SDN访问控制架构。首先,该架构以零信任思想为指导,采用验证属性签名的方式进行身份认证,并在用户访问过程中持续认证;其次,通过信任度量的方式控... 针对软件定义网络(SDN)缺乏有效认证方式与持续访问控制能力的问题,提出一种基于零信任的SDN访问控制架构。首先,该架构以零信任思想为指导,采用验证属性签名的方式进行身份认证,并在用户访问过程中持续认证;其次,通过信任度量的方式控制用户访问,建立用户历史行为模型检测内部威胁,根据用户信任等级授予相应访问权限。实践表明,该架构为SDN提供了先认证、后连接的安全接入模式,增强了SDN检测内部威胁的能力。 展开更多
关键词 软件定义网络 零信任 属性签名 信任度量 访问控制
在线阅读 下载PDF
A Low-Cost Measurement Framework in Software Defined Networks
19
作者 Qiang He Shengbao Wang 《International Journal of Communications, Network and System Sciences》 2017年第5期54-66,共13页
Software Defined Network (SDN) makes network management more flexible by separating control plane and data plane, centralized control and being programmable. Although, network measurement still remains in primary stag... Software Defined Network (SDN) makes network management more flexible by separating control plane and data plane, centralized control and being programmable. Although, network measurement still remains in primary stage in SDN, it has become an essential research field in SDN management. In this context, this paper presents a low-cost high-accuracy measurement framework to support various network measurement tasks, such as throughput, delay and packet loss rate. In this framework, we only measure per-flow edge switches (the first and the last switches). In addition, a new adaptive sampling algorithm is proposed to significantly improve measurement accuracy and decrease network overhead. Meanwhile, we consider a low-cost topology discovery approach into our framework instead of topology discovery currently implemented by SDN controller frameworks. In order to improve the accuracy of delay, we also join a time threshold value to adjust the time delay. Furthermore, we consider and analyze the balance between measurement overhead and accuracy in several aspects. Last, we utilize POX controller to implement the proposed measurement framework. The effectiveness of our solution is demonstrated through simulations in Mininet and Matlab. 展开更多
关键词 software defined network ADAPTIVE Sampling POX controlLER OpenLL
在线阅读 下载PDF
基于改进双向TCN模型的SDN异常流量检测
20
作者 孙璇 李彩霞 +4 位作者 李军 任亚唯 代海英 余果 周昊 《信息安全研究》 北大核心 2026年第4期303-310,共8页
软件定义网络(software defined network,SDN)技术的集中控制特性在提升网络管理效率的同时也带来更加严峻的安全威胁,准确地检测出SDN网络中的异常流量对网络安全至关重要.针对SDN网络可能遭受的网络攻击以及现有方法异常流量时序建模... 软件定义网络(software defined network,SDN)技术的集中控制特性在提升网络管理效率的同时也带来更加严峻的安全威胁,准确地检测出SDN网络中的异常流量对网络安全至关重要.针对SDN网络可能遭受的网络攻击以及现有方法异常流量时序建模能力不足等问题,提出一种适用于SDN环境下的异常流量检测方法.该方法以流的五元组(源IP地址,目的IP地址,源端口号,目的端口号,传输层协议)为划分依据,提取数据包长度序列作为核心时序特征,并基于改进的双向时间卷积网络(bidirectional temporal convolutional network,BiTCN),通过改用ELU激活函数并在原有时间卷积网络(temporal convolutional network,TCN)结构中增加一层残差网络,同时融合多头挤压激励机制(multi-head squeeze excitation,MSE)以增强特征建模能力,实现对异常行为的识别.实验结果表明,该方法在公开SDN数据集上取得良好效果,其准确率、精确率等指标优于传统基线模型. 展开更多
关键词 异常流量检测 软件定义网络 数据包长度 深度学习 时间卷积网络
在线阅读 下载PDF
上一页 1 2 45 下一页 到第
使用帮助 返回顶部