Concepedia

Publication | Open Access

Automated Discovery of Cross-Plane Event-Based Vulnerabilities in Software-Defined Networking

18

Citations

48

References

2020

Year

Abstract

Software-defined networking (SDN) achieves a programmable control plane through the use of logically centralized, event-driven controllers and through network applications (apps) that extend the controllers' functionality. As control plane decisions are often based on the data plane, it is possible for carefully crafted malicious data plane inputs to direct the control plane towards unwanted states that bypass network security restrictions (i.e., cross-plane attacks). Unfortunately, because of the complex interplay among controllers, apps, and data plane inputs, at present it is difficult to systematically identify and analyze these cross-plane vulnerabilities.

References

YearCitations

Page 1