TITLE:
The Design and Research for Network Address Space Randomization in OpenFlow Network
AUTHORS:
Ziyu Zhao, Yuanbo Guo, Wei Liu
KEYWORDS:
IP Conversion, OpenFlow, Moving Target Defense, Floodlight, Hitlist Worms
JOURNAL NAME:
Journal of Computer and Communications,
Vol.3 No.5,
May
26,
2015
ABSTRACT:
By allocating IP address and changing IP
address in source and destination hosts, network address space randomization is
committed to construct a dynamic and heterogeneous network to decrease the
attacking possibility and predictability. The research mainly deploys the
features of OpenFlow network including data plane and control plane decoupling,
centralized control of the network and dynamic updating of forwarding rules,
combines the advantages of the network address space randomization technology
with the features of the OpenFlow network, and designs a novel resolution towards
IP conversion in Floodlight controller. The research can help improve the unpredictability
and decrease the possibility of worm attacking and IP sniffing by IP
allocation.