SoftSwitch: a centralized honeypot-based security approach usingsoftware-defined switching for secure management of VLAN networks

SoftSwitch: централизованный подход на основе honeypot с программно определяемой коммутацией для безопасного управления VLAN-сетями
Resul Daş, Muhammet Baykara
2019-08-10

GNS3 simulationVLAN securitycentralized honeypothoneypot-based intrusion detection and preventionsoftware-defined switching
Honeypot systems are traps for intruders which simulate real systems such as web, application, and database servers used in information systems. Using these systems, unauthorized and malicious access can be efficiently detected. Honeypot is an entity which acts as a source of valued information and its behavior can be monitored. The inability or difficulty of intrusion detection is a serious security problem in networks including virtual local area network (VLAN). According to the literature, the use of honeypots for intrusion detection and prevention in networks including VLAN is strongly recommended. In this paper, in order to provide security and to detect unauthorized and malicious access to the VLAN, a centralized honeypot-based approach with a software-defined switching is proposed. With the developed and proposed honeypot-based intrusion detection and prevention approach, reduction in false alarm, network traffic, and cybersecurity cost, as well as centralized control, was provided. The proposed system has been run in GNS3 simulation software and successful results have been obtained by reducing false alarm level, network traffic, and cybersecurity cost. The numerical results of the attacks that were detected based on the port and protocol using SoftSwitch are detailed in the performance evaluation subsection.
1
A centralized honeypot-based approach using software-defined switching (SoftSwitch) is proposed to secure and manage VLAN networks.
2
Attacks were detected and quantified based on port and protocol, with numerical results presented in the performance evaluation.
3
SoftSwitch enables centralized control for intrusion detection and prevention in VLAN environments.
4
SoftSwitch was implemented and tested in GNS3 simulation software, yielding successful results in reducing false alarms, network traffic, and costs.
5
The proposed system reduces false alarms, network traffic, and cybersecurity cost when deployed.

Centralized honeypot-based security system using software-defined switching for VLAN networks (SoftSwitch)

Detection and prevention of unauthorized and malicious access in VLAN networks, including reduction of false alarms, network traffic, and cybersecurity cost, via centralized control using software-defined switching

Publication Details
Publication Date
2019-08-10
Journal
Publisher
ISSN
Access Type
Author Information
Authors
Resul Daş
Muhammet Baykara
Explore further
Open the scid.ai AI chat with a ready-made request: it will find papers on a similar topic and help build a literature review.
Find similar papers in the chat
Make a presentation
100%