Journal on Communications ›› 2018, Vol. 39 ›› Issue (2): 31-42.doi: 10.11959/j.issn.1000-436x.2018022

• Papers • Previous Articles     Next Articles

SDN security control and forwarding method based on cipher identification

Xi QIN1,Guodong TANG1(),Chaowen CHANG1,2   

  1. 1 The Third Institute,Information Engineering University,Zhengzhou 450001,China
    2 Zhengzhou Xinda Advanced Technology Research Institute,Zhengzhou 450001,China
  • Revised:2017-12-13 Online:2018-02-01 Published:2018-03-28
  • Supported by:
    The National Natural Science Foundation of China(61572517)

Abstract:

Aimed at the limited matching fields and the lack of effective data source authentication mechanism in the software defined networking (SDN),a SDN security control forwarding method based on cipher identification was proposed.First,the cipher identification was generated according to the user identity,file attributes or business content and other characteristics,and the data stream was marked by the cipher identification and signed with the private key based on the cipher identification.Then,when the data stream entered and left the network,the forwarding device verified its signature to ensure the authenticity of the data.At the same time,the cipher identification was designed as a matching item recognized by the forwarding device,and the network forwarding behavior was defined based on the cipher identification,so a fine-grained network control capability could be formed based on people,things,and business flow.Finally,the validity of the method is verified by experimental analysis.

Key words: software defined networking, cipher identification, security control and forwarding, flow table matching

CLC Number: 

No Suggested Reading articles found!