ARP Poisoning Defense System for Software-Defined Networks 


Vol. 43,  No. 11, pp. 1952-1958, Nov.  2018
10.7840/kics.2018.43.11.1952


PDF
  Abstract

Recently, the novel networking technology Software-Defined Networking(SDN) and Service Function Chaining(SFC) are rapid growing, security issues are also emerging for SDN and SFC. However, the research about security and safety on novel networking environment is still unsatisfactory, the vulnerabilities being reveal continuously. In this paper, among these security issues, we introduce the ARP Poisoning attack to use SFC vulnerability and propose method to be able to defend that attack. The proposed method detects repetitive ARP reply which is feature of ARP Poisoning attack and detects ARP Poisoning attack. The proposed method solves the problem of previous detection method which considering whether legitimate user’s MAC address change is as an attack and decide attack as the number of ARP replies. Our proposed method also more accurately detects the presence of an attack. if an attacker know that reptitive ARP reply is used to detect attack, an attacker can intelligent ARP attack. but, our proposed method is able to detect intelligent ARP attack.

  Statistics
Cumulative Counts from November, 2022
Multiple requests among the same browser session are counted as one view. If you mouse over a chart, the values of data points will be shown.


  Cite this article

[IEEE Style]

Y. Kim, M. Park, Y. Joo, "ARP Poisoning Defense System for Software-Defined Networks," The Journal of Korean Institute of Communications and Information Sciences, vol. 43, no. 11, pp. 1952-1958, 2018. DOI: 10.7840/kics.2018.43.11.1952.

[ACM Style]

Young-pin Kim, Min-ho Park, and Yang-ick Joo. 2018. ARP Poisoning Defense System for Software-Defined Networks. The Journal of Korean Institute of Communications and Information Sciences, 43, 11, (2018), 1952-1958. DOI: 10.7840/kics.2018.43.11.1952.

[KICS Style]

Young-pin Kim, Min-ho Park, Yang-ick Joo, "ARP Poisoning Defense System for Software-Defined Networks," The Journal of Korean Institute of Communications and Information Sciences, vol. 43, no. 11, pp. 1952-1958, 11. 2018. (https://doi.org/10.7840/kics.2018.43.11.1952)