IEEE Access (Jan 2021)

A Survey of the Main Security Issues and Solutions for the SDN Architecture

  • Maria B. Jimenez,
  • David Fernandez,
  • Jorge Eduardo Rivadeneira,
  • Luis Bellido,
  • Andres Cardenas

DOI
https://doi.org/10.1109/ACCESS.2021.3109564
Journal volume & issue
Vol. 9
pp. 122016 – 122038

Abstract

Read online

The software-defined networking (SDN) paradigm proposes the decoupling of control and data planes and a centralized software-oriented management approach based on a central controller, easing the development of new applications and services. These design principles pave the way for a more flexible, fast, and dynamic software-controlled network. However, in terms of security, the elements that comprise the SDN architecture present several vulnerabilities, which could be exploited by attackers to carry out malicious actions and thus affect the network and its services. Although for several years, some studies have already focused on identifying the weaknesses of the SDN layer structure, the nature of the attacks, and possible solutions for this paradigm, the literature contains few contributions that review and discuss this topic in an integral fashion. This paper provides a comprehensive, updated, and detailed review of the main security issues and mitigating measures for all layers and interfaces of the SDN architecture, classifying the contributions according to the STRIDE threat modeling methodology categories. Finally, this manuscript identifies, discusses, and synthesizes open challenges and future research directions in this area.

Keywords