SoftSwitch: a centralized honeypot-based security approach usingsoftware-defined switching for secure management of VLAN networks
SoftSwitch: централизованный подход на основе honeypot с программно определяемой коммутацией для безопасного управления VLAN-сетями
2019-08-10
SCID: 54.1/qkunpd8g
Discuss with AI
GNS3 simulationVLAN securitycentralized honeypothoneypot-based intrusion detection and preventionsoftware-defined switching
Figures from the paper
Abstract (AI)
Honeypot systems are traps for intruders which simulate real systems such as web, application, and database servers used in information systems. Using these systems, unauthorized and malicious access can be efficiently detected. Honeypot is an entity which acts as a source of valued information and its behavior can be monitored. The inability or difficulty of intrusion detection is a serious security problem in networks including virtual local area network (VLAN). According to the literature, the use of honeypots for intrusion detection and prevention in networks including VLAN is strongly recommended. In this paper, in order to provide security and to detect unauthorized and malicious access to the VLAN, a centralized honeypot-based approach with a software-defined switching is proposed. With the developed and proposed honeypot-based intrusion detection and prevention approach, reduction in false alarm, network traffic, and cybersecurity cost, as well as centralized control, was provided. The proposed system has been run in GNS3 simulation software and successful results have been obtained by reducing false alarm level, network traffic, and cybersecurity cost. The numerical results of the attacks that were detected based on the port and protocol using SoftSwitch are detailed in the performance evaluation subsection.
Key Findings
1
A centralized honeypot-based approach using software-defined switching (SoftSwitch) is proposed to secure and manage VLAN networks.
2
Attacks were detected and quantified based on port and protocol, with numerical results presented in the performance evaluation.
3
SoftSwitch enables centralized control for intrusion detection and prevention in VLAN environments.
4
SoftSwitch was implemented and tested in GNS3 simulation software, yielding successful results in reducing false alarms, network traffic, and costs.
5
The proposed system reduces false alarms, network traffic, and cybersecurity cost when deployed.
Research Object
Centralized honeypot-based security system using software-defined switching for VLAN networks (SoftSwitch)
Research Subject
Detection and prevention of unauthorized and malicious access in VLAN networks, including reduction of false alarms, network traffic, and cybersecurity cost, via centralized control using software-defined switching
Publication Details
Publication Date
2019-08-10
Journal
Publisher
ISSN
Open access PDF
Access Type
Author Information
Download PDF
Subscribe to digest