Implications and detection of DoS attacks in OpenFlow-based networks

Stefan Hommes, Radu State, Thomas Engel · 2014

In this paper, we address the potential of centralised network monitoring based on Software-Defined Networking with OpenFlow. Due to the vulnerability of the flow table, which can store only a limited number of entries, we discuss and show the implications for a DoS attack on a testbed consisting of OpenFlow enabled network devices. Such an attack can be detected by analysing variations in the logical topology, using techniques from information theory that can run as a network service on the network controller.

Read the paper · More papers on PaperTik