SoftSwitch: a centralized honeypot-based security approach using software-defined switching for secure management of VLAN networks

被引:17
作者
Baykara, Muhammet [1 ]
Das, Resul [1 ]
机构
[1] Firat Univ, Fac Technol, Dept Software Engn, Elazig, Turkey
关键词
Intrusion detection and prevention systems; honeypots; network security; system security; VLAN security; SIGNATURE GENERATION; INTRUSION DETECTION;
D O I
10.3906/elk-1812-86
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Honeypot systems are traps for intruders which simulate real systems such as web, application, and database servers used in information systems. Using these systems, unauthorized and malicious access can be efficiently detected. Honeypot is an entity which acts as a source of valued information and its behavior can be monitored. The inability or difficulty of intrusion detection is a serious security problem in networks including virtual local area network (VLAN). According to the literature, the use of honeypots for intrusion detection and prevention in networks including VLAN is strongly recommended. In this paper, in order to provide security and to detect unauthorized and malicious access to the VLAN, a centralized honeypot-based approach with a software-defined switching is proposed. With the developed and proposed honeypot-based intrusion detection and prevention approach, reduction in false alarm, network traffic, and cybersecurity cost, as well as centralized control, was provided. The proposed system has been run in GNS3 simulation software and successful results have been obtained by reducing false alarm level, network traffic, and cybersecurity cost. The numerical results of the attacks that were detected based on the port and protocol using SoftSwitch are detailed in the performance evaluation subsection.
引用
收藏
页码:3309 / 3325
页数:17
相关论文
共 31 条
[1]   Scalable and Performance-Efficient Client Honeypot on High Interaction System [J].
Akiyama, Mitsuaki ;
Kawakoya, Yuhei ;
Hariu, Takeo .
2012 IEEE/IPSJ 12TH INTERNATIONAL SYMPOSIUM ON APPLICATIONS AND THE INTERNET (SAINT), 2012, :40-50
[2]  
Alnabulsi Hussein., 2014, Computer Science and Engineering (APWC on CSE), 2014 Asia-Pacific World Congress on, P1
[3]  
[Anonymous], RECENT ADV COMPUTER
[4]  
[Anonymous], 2006, P 39 HAW INT C SYST
[5]  
[Anonymous], UL IPV6 KONF ANK TUR
[6]  
[Anonymous], 2013, 1 INT S DIG FOR SEC
[7]  
[Anonymous], 2016, DESIGN IMPLEMENTATIO
[8]  
[Anonymous], 2012 SPRING C ENG TE
[9]  
Baykara M., 2017, International Journal of Computer Networks and Applications, V4, P62
[10]   A novel honeypot based security approach for real-time intrusion detection and prevention systems [J].
Baykara, Muhammet ;
Das, Resul .
JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2018, 41 :103-116