• Electronics Optics & Control
  • Vol. 23, Issue 3, 49 (2016)
SUN Peng
Author Affiliations
  • [in Chinese]
  • show less
    DOI: 10.3969/j.issn.1671-637x.2016.03.012 Cite this Article
    SUN Peng. Source Address Validation Methods Based on SDN[J]. Electronics Optics & Control, 2016, 23(3): 49 Copy Citation Text show less

    Abstract

    Nowadays, more and more attacks based on source address spoofing appear on the internet, which is difficult to trace and is a big threat to network security.Under the condition of the existing network environment, it is very difficult to implement source address validation.A significant network innovation brought by Software-Defined Networking (SDN) has made the network control more convenient.This article utilizes programmable controller to redesign and implement source address validation method, and puts forward two kinds of source address validation methods based on SDN.One is binding the stateless IP address and underlying immutable tags like MAC address/Port, forming a triple flow table filtering rules (MAC, Port and IP) in the interchanger;the other is to compute routing path with the shortest path algorithm, sending flow tables like source_IP, destination_IP, in_port and out_port as filtering rules.Simulation experiment was made to compare the effect of the two schemes.