e-Infrastructure and e-Services for Developing Countries. 10th EAI International Conference, AFRICOMM 2018, Dakar, Senegal, November 29-30, 2019, Proceedings

Research Article

Secure Exchanges Activity in Function of Event Detection with the SDN

Download
177 downloads
  • @INPROCEEDINGS{10.1007/978-3-030-16042-5_28,
        author={Salim Mahamat Charfadine and Olivier Flauzac and Florent Nolot and Cyril Rabat and Carlos Gonzalez},
        title={Secure Exchanges Activity in Function of Event Detection with the SDN},
        proceedings={e-Infrastructure and e-Services for Developing Countries. 10th EAI International Conference, AFRICOMM 2018, Dakar, Senegal, November 29-30, 2019, Proceedings},
        proceedings_a={AFRICOMM},
        year={2019},
        month={3},
        keywords={IoT SDN Security OpenFlow Firewall IPS/IDS NAC},
        doi={10.1007/978-3-030-16042-5_28}
    }
    
  • Salim Mahamat Charfadine
    Olivier Flauzac
    Florent Nolot
    Cyril Rabat
    Carlos Gonzalez
    Year: 2019
    Secure Exchanges Activity in Function of Event Detection with the SDN
    AFRICOMM
    Springer
    DOI: 10.1007/978-3-030-16042-5_28
Salim Mahamat Charfadine1,*, Olivier Flauzac1,*, Florent Nolot1,*, Cyril Rabat1,*, Carlos Gonzalez1,*
  • 1: Université de Reims Champagne-Ardenne, Laboratoire CReSTIC
*Contact email: salim.mahamat-charfadine@etudiant.univ-reims.fr, olivier.flauzac@univ-reims.fr, florent.nolot@univ-reims.fr, cyril.rabat@univ-reims.fr, carlos.gonzalez-santamaria@etudiant.univ-reims.fr

Abstract

With the exponential evolution of the Internet of Things (IoT), ensuring network security has become a big challenge for network administrators. Network security is based on multiple independent devices such as firewall, IDS/IPS, NAC where the main role is to monitor the information exchanged between the inside and outside perimeters of the enterprises networks. However, the administration of these network devices can be complex and tedious if it is performed independently on each of them. In recent years, with the introduction of the Software Defined Networking concept (SDN) offers many opportunities by providing a centralized and programmable administration. In this article, we propose a distributed SDN architecture for IoT with a coupled controllers/IDS, by using APIs to dynamically analyze, detect and delete malicious flows. The management of network security is therefore simplified, dynamic and scalable with this approach. We also present the deployment of a real network to test our solution.