Publication:
CWT-DPA: Component-wise waiting time for BC-enabled data plane authentication

dc.contributor.authorLatah, Majd
dc.contributor.authorÇakmakçı, Kübra Kalkan
dc.contributor.departmentComputer Science
dc.contributor.ozuauthorÇAKMAKCİ, Kübra Kalkan
dc.contributor.ozugradstudentLatah, Majd
dc.date.accessioned2023-05-30T08:58:53Z
dc.date.available2023-05-30T08:58:53Z
dc.date.issued2022-11-24
dc.description.abstractSoftware-Defined Networking (SDN) is a promising networking paradigm that brings central management and network programmability to improve existing networking systems. However, SDN has several security threats due to its untrusted control and data planes. Blockchain (BC) technology has recently provided a fault-tolerant, decentralized, and immutable ledger among untrusted parties. While the integration between SDN and BC enhances the security, it suffers from performance degradation when applied to SDN's data plane. In traditional BC-SDN approaches, such as our previous work DPSEC (Latah and Kalkan, 2020), every switch has to wait for the final commitment of each submitted transaction, which significantly decreases the performance of the BC-SDN model. In this work, we enhance the performance of BC-SDN data plane approaches by separating switch-related and host-related transactions and propose a different waiting strategy for each type of data plane transaction. We also propose a batching technique to enhance the average latency for high-load scenarios. In addition, SDN switches and controllers utilize lattice-based signatures and Key Encapsulation Methods (KEMs) to protect against quantum adversaries. We compare the performance of CWT-DPA with existing solutions such as SSL/TLSv1.3, DPSEC (Latah and Kalkan, 2020), and AuthFlow (Mattos and Duarte, 2016).en_US
dc.identifier.doi10.1016/j.comnet.2022.109423en_US
dc.identifier.issn1389-1286en_US
dc.identifier.scopus2-s2.0-85140954899
dc.identifier.urihttp://hdl.handle.net/10679/8349
dc.identifier.urihttps://doi.org/10.1016/j.comnet.2022.109423
dc.identifier.volume219en_US
dc.identifier.wos000880783300007
dc.language.isoengen_US
dc.peerreviewedyesen_US
dc.publicationstatusPublisheden_US
dc.publisherElsevieren_US
dc.relation.ispartofComputer Networks
dc.relation.publicationcategoryInternational Refereed Journal
dc.rightsrestrictedAccess
dc.subject.keywordsBlockchain (BC)en_US
dc.subject.keywordsNetwork securityen_US
dc.subject.keywordsSoftware-defined networking (SDN)en_US
dc.titleCWT-DPA: Component-wise waiting time for BC-enabled data plane authenticationen_US
dc.typearticleen_US
dspace.entity.typePublication
relation.isOrgUnitOfPublication85662e71-2a61-492a-b407-df4d38ab90d7
relation.isOrgUnitOfPublication.latestForDiscovery85662e71-2a61-492a-b407-df4d38ab90d7

Files

License bundle

Now showing 1 - 1 of 1
Placeholder
Name:
license.txt
Size:
1.45 KB
Format:
Item-specific license agreed upon to submission
Description:

Collections