首页 | 本学科首页   官方微博 | 高级检索  
     检索      

基于SDN的家用路由器安全审计工具
引用本文:王宇,李巍,李舟军.基于SDN的家用路由器安全审计工具[J].北京理工大学学报,2019,39(7):743-749.
作者姓名:王宇  李巍  李舟军
作者单位:北京航空航天大学计算机学院,北京,100083;北京航空航天大学计算机学院,北京,100083;北京航空航天大学计算机学院,北京,100083
基金项目:北京航空航天大学研究生创新实践基金(YCSJ-02-2017-06);国家自然科学基金资助项目(U1636211,61672081);北京成像技术高精尖创新中心项目(BAICIT-2016001m);国家重点研发计划项目(2016QY04W0802)
摘    要:在僵尸网络等威胁的环境下,本文提出了一种基于OpenFlow协议的无线路由器安全审计功能的设计与实现,旨在于通过计算信息熵检测路由器的流量是否存在异常,并将检测系统置于软件定义网络(software defined network,SDN)架构下,实现控制、展示功能.实验结果表明,整个系统能在明显检测网络中的DDoS攻击的前提下,使整个系统的运行内存仅有8 MB,网络负载仅有2.67%. 

关 键 词:软件定义网络  OpenFlow协议  安全审计  信息熵  DDoS攻击
收稿时间:2018/10/27 0:00:00

Design of the Security Audit Function for SDN-Based Home Router
WANG Yu,LI Wei and LI Zhou-jun.Design of the Security Audit Function for SDN-Based Home Router[J].Journal of Beijing Institute of Technology(Natural Science Edition),2019,39(7):743-749.
Authors:WANG Yu  LI Wei and LI Zhou-jun
Institution:School of Computer Science, Beihang University, Beijing 100083, China
Abstract:In this paper, a design and implementation method was proposed for the security audit function of wireless router based on OpenFlow protocol in the threat environment such as botnet. It was designed to detect the abnormality of the router''s traffic through information entropy calculation and arranged the detection system in SDN (software defined network) architecture to implement the control and display functions. The experimental results show that the entire system can detect the DDoS attack in the network, and the entire system runs only in 8 MB memory, and the network load is only 2.67%.
Keywords:software defined network  OpenFlow protocol  security audit  information entropy  DDoS attack
本文献已被 万方数据 等数据库收录!
点击此处可从《北京理工大学学报》浏览原始摘要信息
点击此处可从《北京理工大学学报》下载免费的PDF全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号