Visible to the public Towards an accountable software-defined networking architectureConflict Detection Enabled

TitleTowards an accountable software-defined networking architecture
Publication TypeConference Paper
Year of Publication2017
AuthorsUjcich, Benjamin, Miller, Andrew, Bates, Adam, Sanders, William
Date Published07
KeywordsHuman Behavior, Monitoring, Fusion, and Response for Cyber Resilience, Policy-Governed Secure Collaboration, Resilient Architectures, UIUC
Abstract

Software-defined networking (SDN) overcomes many limitations of traditional networking architectures because of its programmable and flexible nature. Security applications, for instance, can dynamically reprogram a network to respond to ongoing threats in real time. However, the same flexibility also creates risk, since it can be used against the network. Current SDN architectures potentially allow adversaries to disrupt one or more SDN system components and to hide their actions in doing so. That makes assurance and reasoning about past network events more difficult, if not impossible. In this paper, we argue that an SDN architecture must incorporate various notions of accountability for achieving systemwide cyber resiliency goals. We analyze accountability based on a conceptual framework, and we identify how that analysis fits in with the SDN architecture's entities and processes. We further consider a case study in which accountability is necessary for SDN network applications, and we discuss the limits of current approaches.

DOI10.1109/NETSOFT.2017.8004206
Citation Keyinproceedings

Other available formats:

Towards-an-Accountable-Software-Defined-Networking-Architecture.pdf
AttachmentSize
bytes