Research Repository

Blockchain-Aided Flow Insertion and Verification in Software Defined Networks

Hu, Jiejun and Reed, Martin and Al-Naday, Mays and Thomos, Nikolaos (2020) Blockchain-Aided Flow Insertion and Verification in Software Defined Networks. In: 2020 Global Internet of Things Summit (GIoTS), 2020-06-03 - 2020-06-03, Dublin.

2006.14513v1.pdf - Accepted Version

Download (507kB) | Preview


The Internet of Things (IoT) connected by Software Defined Networking (SDN) promises to bring great benefits to cyber-physical systems. However, the increased attack surface offered by the growing number of connected vulnerable devices and complex nature of SDN control plane applications could overturn the huge benefits of such a system. This paper addresses the vulnerability of some unspecified security flaw in the SDN control plane application (such as a zero-day software vulnerability) which can be exploited to insert malicious flow rules in the switch that do not match network policies. Specifically, we propose a blockchain-as-a-service (BaaS) based framework that supports switch flow verification and insertion; and additionally provides straightforward deployment of blockchain technology within an existing SDN infrastructure. While use of an external BaaS brings straightforward deployment, it obscures knowledge of the blockchain agents who are responsible for flow conformance testing through a smart blockchain contract, leading to potential exploitation. Thus, we design a strategy to prevent the blockchain agents from acting arbitrarily, as this would result in what is termed a “moral hazard”. We achieve this by developing a novel mathematical model of the fair reward scheme based on game theory. To understand the performance of our system, we evaluate our model using a Matlab based simulation framework. The simulation results demonstrate that the proposed algorithm balances the needs of the blockchain agents to maximise the overall social welfare, i.e. the sum of profits across all parties.

Item Type: Conference or Workshop Item (Paper)
Additional Information: Notes: 9 pages, 6 figures, published in Global Internet of Things Summit 2020
Uncontrolled Keywords: blockchain; SDN; security; IoT; flow verification
Divisions: Faculty of Science and Health
Faculty of Science and Health > Computer Science and Electronic Engineering, School of
SWORD Depositor: Elements
Depositing User: Elements
Date Deposited: 13 Aug 2020 16:12
Last Modified: 02 Feb 2022 12:39

Actions (login required)

View Item View Item