IP Address Protection Method in SDN Using Format Preserving Encryption 


Vol. 46,  No. 2, pp. 268-279, Feb.  2021
10.7840/kics.2021.46.2.268


PDF
  Abstract

SDN(Software Defined Network) can manage the functions and services of the network through central control. However, SDN, like traditional networks, is able to identify network resources by IP address exposure and there are vulnerabilities to IP spoofing, sniffing, network scanning, and DoS using IP addresses. In order to solve this problem, a technology that continuously changes the environment is being studied to delay or prevent an attack on the system in the pre-attack preparation stage. This paper proposes a method of encrypting the IP address using a format-preserving encryption to protect the IP address from network security threats such as sniffing and spoofing while minimizing the change of the protocol structure. In the key distribution process, host authentication was used to counter attacks such as non-repudiation and flow rule conflict. In addition, experiments results showed that approximately 32% of hosts are safe for network scanning attacks. As a result, we confirmed that our proposal is better than the existing resource protection technology in the security.

  Statistics
Cumulative Counts from November, 2022
Multiple requests among the same browser session are counted as one view. If you mouse over a chart, the values of data points will be shown.


  Cite this article

[IEEE Style]

D. Park, M. Kim, J. Lim, R. Jang, S. Lee, "IP Address Protection Method in SDN Using Format Preserving Encryption," The Journal of Korean Institute of Communications and Information Sciences, vol. 46, no. 2, pp. 268-279, 2021. DOI: 10.7840/kics.2021.46.2.268.

[ACM Style]

Dohyeon Park, Mintae Kim, Jonghoon Lim, Raeseung Jang, and Sun-Young Lee. 2021. IP Address Protection Method in SDN Using Format Preserving Encryption. The Journal of Korean Institute of Communications and Information Sciences, 46, 2, (2021), 268-279. DOI: 10.7840/kics.2021.46.2.268.

[KICS Style]

Dohyeon Park, Mintae Kim, Jonghoon Lim, Raeseung Jang, Sun-Young Lee, "IP Address Protection Method in SDN Using Format Preserving Encryption," The Journal of Korean Institute of Communications and Information Sciences, vol. 46, no. 2, pp. 268-279, 2. 2021. (https://doi.org/10.7840/kics.2021.46.2.268)