Empowering network security with programmable switches: A comprehensive survey

X Chen, C Wu, X Liu, Q Huang, D Zhang… - … Surveys & Tutorials, 2023 - ieeexplore.ieee.org
With the growth of network applications such as 5G and artificial intelligence, network
security techniques, ie, the techniques that detect various attacks (eg, well-known denial-of …

Empowering ddos attack mitigation with programmable switches

X Chen, H Liu, D Zhang, Q Huang, H Zhou… - IEEE …, 2022 - ieeexplore.ieee.org
Distributed denial-of-service (DDoS) attacks have long been the most severe and
destructive attack on modern networks. Some solutions place several middleboxes that run …

White box analysis at the service of low rate saturation attacks on virtual sdn data plane

S Khorsandroo, AS Tosun - 2019 IEEE 44th LCN Symposium …, 2019 - ieeexplore.ieee.org
Today's virtual switches not only support legacy network protocols and standard network
management interfaces, but also become adapted to OpenFlow as a prevailing …

Mew: Enabling large-scale and dynamic link-flooding defenses on programmable switches

H Zhou, S Hong, Y Liu, X Luo, W Li… - 2023 IEEE Symposium …, 2023 - ieeexplore.ieee.org
Link-flooding attacks (LFAs) can cut off the Internet connection to selected server targets and
are hard to mitigate because adversaries use normal-looking and low-rate flows and can …

A survey on security applications of P4 programmable switches and a STRIDE-based vulnerability assessment

A AlSabeh, J Khoury, E Kfoury, J Crichigno… - Computer …, 2022 - Elsevier
The emergence of the IoT, cloud systems, data centers, and 5G networks is increasing the
demand for a rapid development of new applications and protocols at all levels of the …

Soter: Deep learning enhanced in-network attack detection based on programmable switches

G Xie, Q Li, C Cui, P Zhu, D Zhao, W Shi… - 2022 41st …, 2022 - ieeexplore.ieee.org
Though several deep learning (DL) detectors have been proposed for the network attack
detection and achieved high accuracy, they are computationally expensive and struggle to …

Lineswitch: Efficiently managing switch flow in software-defined networking while effectively tackling dos attacks

M Ambrosin, M Conti, F De Gaspari… - Proceedings of the 10th …, 2015 - dl.acm.org
Software Defined Networking (SDN) is a new networking architecture that aims to provide
better decoupling between network control (control plane) and data forwarding …

[PDF][PDF] Virtualizing and utilizing network security functions for securing software defined infrastructure

H Hu, GJ Ahn - Looking Beyond the Internet Workshops, 2015 - flux.utah.edu
In traditional networks, network security functions, such as firewall and IDS/IPS, are
generally implemented on vendor proprietary appliances or middleboxes. However …

Jaqen: A {High-Performance}{Switch-Native} approach for detecting and mitigating volumetric {DDoS} attacks with programmable switches

Z Liu, H Namkung, G Nikolaidis, J Lee, C Kim… - 30th USENIX Security …, 2021 - usenix.org
The emergence of programmable switches offers a new opportunity to revisit ISP-scale
defenses for volumetric DDoS attacks. In theory, these can offer better cost vs. performance …

Cerberus: Enabling Efficient and Effective In-Network Monitoring on Programmable Switches

H Zhou, G Gu - 2024 IEEE Symposium on Security and Privacy (SP), 2023 - computer.org
With the increasing volume of network traffic and the emergence of new types of attacks,
traditional network monitoring is facing significant challenges in ensuring network security …