Visible to the public MTD Analysis and Evaluation Framework in Software Defined Network (MASON)

TitleMTD Analysis and Evaluation Framework in Software Defined Network (MASON)
Publication TypeConference Paper
Year of Publication2018
AuthorsChowdhary, Ankur, Alshamrani, Adel, Huang, Dijiang, Liang, Hongbin
Conference NameProceedings of the 2018 ACM International Workshop on Security in Software Defined Networks & Network Function Virtualization
PublisherACM
Conference LocationNew York, NY, USA
ISBN Number978-1-4503-5635-0
KeywordsIntrusion Detection System (IDS), moving target defense, moving target defense (MTD), Predictive Metrics, pubcrawl, Resiliency, Scalability, software defined networking (SDN)
AbstractSecurity issues in a Software Defined Network (SDN) environment like system vulnerabilities and intrusion attempts can pose a security risk for multi-tenant network managed by SDN. In this research work, Moving target defense (MTD)technique based on shuffle strategy - port hopping has been employed to increase the difficulty for the attacker trying to exploit the cloud network. Our research workMASON, considers the problem of multi-stage attacks in a network managed using SDN. SDN controller can be used to dynamically reconfigure the network and render attacker>>s knowledge in multi-stage attacks redundant. We have used a threat score based on vulnerability information and intrusion attempts to identify Virtual Machines (VMs) in systems with high-security risk and implement MTD countermeasures port hopping to assess threat score reduction in a cloud network.
URLhttp://doi.acm.org/10.1145/3180465.3180473
DOI10.1145/3180465.3180473
Citation Keychowdhary_mtd_2018