Scalable and secure SDN based ethernet architecture by suppressing broadcast traffic

Ethernet is one of the widespread protocols residing in the second layer of the seven-layers Open Systems Interconnection (OSI) model. Ethernet offers various advantages which enable its widespread use in all types of network topology and becomes an essential part of computer and network architectur...

Full description

Bibliographic Details
Main Authors: Munther, Munther Numan, Hashim, Fazirulhisyam, Abdul Latiff, Nurul Adilah, Alezabi, Kamal Ali, Jiun, Terng Liew
Format: Article
Language:English
Published: Elsevier BV 2021
Online Access:http://psasir.upm.edu.my/id/eprint/95014/1/Scalable%20and%20secure%20SDN%20based%20ethernet%20architecture%20by%20suppressing%20broadcast%20traffic.pdf
_version_ 1796983023961374720
author Munther, Munther Numan
Hashim, Fazirulhisyam
Abdul Latiff, Nurul Adilah
Alezabi, Kamal Ali
Jiun, Terng Liew
author_facet Munther, Munther Numan
Hashim, Fazirulhisyam
Abdul Latiff, Nurul Adilah
Alezabi, Kamal Ali
Jiun, Terng Liew
author_sort Munther, Munther Numan
collection UPM
description Ethernet is one of the widespread protocols residing in the second layer of the seven-layers Open Systems Interconnection (OSI) model. Ethernet offers various advantages which enable its widespread use in all types of network topology and becomes an essential part of computer and network architecture. Despite its features, Ethernet suffers from scalability issues where the increasing number of hosts in a single broadcast domain will significantly expand the broadcast traffic in the network. Since the emergence of software-defined networking (SDN), researchers exploited various attractive features of SDN to suppress the broadcast traffic. Although capable in addressing the scalability issue of Ethernet, the existing SDN based solutions are lacking of security mechanism, which may expose the network to various ARP based attacks. Owing to this issue, this paper proposes a floodless and secure mechanism to suppress broadcast traffic. In general, the proposed solution utilizes SDN architecture and accommodates a multistage security algorithm. The multistage security algorithm consists of three stages; each stage incorporates specific analysis to identify the packet status or behavior, and react accordingly based on its status. To demonstrate the efficiency of the proposed solution, several ARP based attack scenarios are generated and evaluated using Mininet emulator. The performance evaluation indicates that the true positive ratio for attack detection in the proposed solution is 57.14% for the first stage, 66.66% for the second stage, and in some cases may achieve 100% for the final stage.
first_indexed 2024-03-06T11:00:27Z
format Article
id upm.eprints-95014
institution Universiti Putra Malaysia
language English
last_indexed 2024-03-06T11:00:27Z
publishDate 2021
publisher Elsevier BV
record_format dspace
spelling upm.eprints-950142023-01-06T08:35:08Z http://psasir.upm.edu.my/id/eprint/95014/ Scalable and secure SDN based ethernet architecture by suppressing broadcast traffic Munther, Munther Numan Hashim, Fazirulhisyam Abdul Latiff, Nurul Adilah Alezabi, Kamal Ali Jiun, Terng Liew Ethernet is one of the widespread protocols residing in the second layer of the seven-layers Open Systems Interconnection (OSI) model. Ethernet offers various advantages which enable its widespread use in all types of network topology and becomes an essential part of computer and network architecture. Despite its features, Ethernet suffers from scalability issues where the increasing number of hosts in a single broadcast domain will significantly expand the broadcast traffic in the network. Since the emergence of software-defined networking (SDN), researchers exploited various attractive features of SDN to suppress the broadcast traffic. Although capable in addressing the scalability issue of Ethernet, the existing SDN based solutions are lacking of security mechanism, which may expose the network to various ARP based attacks. Owing to this issue, this paper proposes a floodless and secure mechanism to suppress broadcast traffic. In general, the proposed solution utilizes SDN architecture and accommodates a multistage security algorithm. The multistage security algorithm consists of three stages; each stage incorporates specific analysis to identify the packet status or behavior, and react accordingly based on its status. To demonstrate the efficiency of the proposed solution, several ARP based attack scenarios are generated and evaluated using Mininet emulator. The performance evaluation indicates that the true positive ratio for attack detection in the proposed solution is 57.14% for the first stage, 66.66% for the second stage, and in some cases may achieve 100% for the final stage. Elsevier BV 2021 Article PeerReviewed text en http://psasir.upm.edu.my/id/eprint/95014/1/Scalable%20and%20secure%20SDN%20based%20ethernet%20architecture%20by%20suppressing%20broadcast%20traffic.pdf Munther, Munther Numan and Hashim, Fazirulhisyam and Abdul Latiff, Nurul Adilah and Alezabi, Kamal Ali and Jiun, Terng Liew (2021) Scalable and secure SDN based ethernet architecture by suppressing broadcast traffic. Egyptian Informatics Journal, 23 (1). art. no. 2113. pp. 113-126. ISSN 1110-8665; ESSN: 2090-4754 https://www.sciencedirect.com/science/article/pii/S1110866521000475?via%3Dihub 10.1016/j.eij.2021.08.001
spellingShingle Munther, Munther Numan
Hashim, Fazirulhisyam
Abdul Latiff, Nurul Adilah
Alezabi, Kamal Ali
Jiun, Terng Liew
Scalable and secure SDN based ethernet architecture by suppressing broadcast traffic
title Scalable and secure SDN based ethernet architecture by suppressing broadcast traffic
title_full Scalable and secure SDN based ethernet architecture by suppressing broadcast traffic
title_fullStr Scalable and secure SDN based ethernet architecture by suppressing broadcast traffic
title_full_unstemmed Scalable and secure SDN based ethernet architecture by suppressing broadcast traffic
title_short Scalable and secure SDN based ethernet architecture by suppressing broadcast traffic
title_sort scalable and secure sdn based ethernet architecture by suppressing broadcast traffic
url http://psasir.upm.edu.my/id/eprint/95014/1/Scalable%20and%20secure%20SDN%20based%20ethernet%20architecture%20by%20suppressing%20broadcast%20traffic.pdf
work_keys_str_mv AT munthermunthernuman scalableandsecuresdnbasedethernetarchitecturebysuppressingbroadcasttraffic
AT hashimfazirulhisyam scalableandsecuresdnbasedethernetarchitecturebysuppressingbroadcasttraffic
AT abdullatiffnuruladilah scalableandsecuresdnbasedethernetarchitecturebysuppressingbroadcasttraffic
AT alezabikamalali scalableandsecuresdnbasedethernetarchitecturebysuppressingbroadcasttraffic
AT jiunterngliew scalableandsecuresdnbasedethernetarchitecturebysuppressingbroadcasttraffic