SDN enhanced campus network authentication and access control system
Feliksas Kuliešius, Vainius Dangovas · 2016
Attempts to secure the enterprise network, even when using strong AAA (authentication, authorization and accounting) schemes, meet the user box spoofing and security middle boxes (firewalls and other filtering tools) bypassing problems. Seeking to strengthen the network security level, the names (users, addresses) and user machines must be bound tightly to the unambiguously defined network appliances and their ports. Using traditional network' architecture these solutions are difficult to realize. The SDN framework allows solving the aforementioned problems more precise and securely. One of the possible ways to gradually implement the controllability of traffic flow in standard hierarchical networks by applying OpenFlow driven SDN architecture and commodity access switches, is described in this paper. The performance impact of the solution is also assessed.