SDN Virtual Honeynet for Network Attack Information Acquisition
Abstract
Since the existing network defense technology cannot acquire on-demand network attack information, and cannot adjust the network structure according to the threats of network attack dynamically, we propose a SDN virtual honeynet for network attack information acquisition. By constructing the SDN honeynet and using the good expansibility and controllability of the OpenDaylight controller, the problems such as the difficulty of flow control, inconvenient deployment and complex adjustment of the traditional honeynet are solved. Finally, the mininet simulation platform is used to build SDN virtual honeynet, and simulation results show that the SDN virtual honeynet can achieve on-demand acquire network attack information and dynamic adjustment of network structure etc., thereby reducing the network attack threat.
Keywords
Attack information, Software defined networking, Virtual honeynet, On-demand acquisition.
DOI
10.12783/dtcse/smce2017/12435
10.12783/dtcse/smce2017/12435
Refbacks
- There are currently no refbacks.