Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

A method for network device group authentication in software-defined network

A technology of software-defined network and intermediate network equipment, which is applied in the field of communication to achieve the effect of saving bandwidth consumption and reducing bandwidth consumption

Active Publication Date: 2018-03-02
BEIHANG UNIV
View PDF4 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0004] The purpose of the present invention is to overcome the deficiencies of the prior art in solving network device group authentication in SDN, and propose a method for network device group authentication in software-defined networks, which is a method of combining the signatures of each network device by aggregated signatures, and finally by The unified implementation of authentication by the controller can not only effectively solve the problem of network device group authentication, but also avoid the transmission of excessive redundant signature information, and reduce the consumption of bandwidth resources for network device group authentication

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • A method for network device group authentication in software-defined network

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0031] The following will be combined with figure 1 And embodiment the present invention is described in further detail.

[0032] In this embodiment, the SDN includes a controller and n∈(3,4,5,...) network devices, and the identity of the network device is ID i ,i∈(1,…,n), ie ID 1 is the initial network device identity, ID 2 ~ID n-1 It is the identity of the intermediate network device, ID n It is the identity of the terminal network device.

[0033] Module 1: Initialize the module. The controller outputs the public key PK and master key MSK according to the system security parameter λ. The public key PK is public, and the master key MSK is kept by the controller. At the same time, the controller sets the secret value sP of the network device i , to be used later in the implementation of authentication. The specific implementation of the module function is divided into four steps:

[0034] Step 1: The controller first inputs the system security parameter λ, and then ...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses a network device group authentication method in a software-defined network, in particular relates to a group authentication method based on aggregated signature technology, and belongs to the communication field. It mainly includes: 1) initialization module; 2) signature module; 3) verification module and seven major steps. Under the SDN structure, the present invention proposes a network device group authentication method in SDN, making full use of the southbound interface between the network device and the controller and the data link between the network devices, and the controller can complete a network with only one authentication. Authentication of all network devices on the device link reduces the bandwidth consumption of the controller by traditional authentication methods. In addition, the SDN network device signature module includes the authentication step of the previous network device, which can detect the identity of the previous network device in time. The invention adopts the technology of aggregated signatures, which can effectively save the bandwidth consumption caused by the transmission of signature data between network devices.

Description

technical field [0001] The invention relates to a network device group authentication method in a software-defined network, in particular to a group authentication method based on aggregated signature technology, which belongs to the communication field. Background technique [0002] With the rapid development of Internet technology, Software Defined Network (Software Defined Network, SDN) improves network security, manageability and control capabilities because it separates the network control plane from the data plane through the use of controllers, and is widely used in many industries. All have a good application space, and the primary problem of SDN at present is the security problem. For the controller in SDN, obtaining the parameters of the real data plane is a necessary operation for implementing control and management. Therefore, it is particularly important to implement identity authentication on network devices in SDN to ensure the authenticity of network device ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & Authority Patents(China)
IPC IPC(8): H04L9/32H04L29/06H04L12/18
Inventor 刘建伟毛可飞陈杰王蒙蒙
Owner BEIHANG UNIV
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products