Intelligent Network Management Device for SDN Intrusion Handling
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Conventional SDN controllers lack the capability to handle all network situations, especially persistent network attacks, as they are not designed to manage intrusion detection and prevention efficiently, leading to resource wastage and delayed response times.
Innovation Solution
An intelligent network management device with an analytic unit and a processing unit that analyzes packets to detect events and sends instructions to the SDN controller to adjust switch configurations, enabling real-time handling of network anomalies by the SDN switch, thereby offloading the intelligent network management device and enhancing network security.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If conventional SDN controllers are used to manage network security, then network control can be centralized, but the controller lacks sufficient capability to handle intrusion detection and prevention efficiently
Solution Approach 1:
The system divides network management functions into separate components: the SDN controller handles centralized control and flow table management, while dedicated intelligent network management devices handle intrusion detection and prevention. This segmentation allows each component to specialize in its function, resolving the contradiction between centralized control and specialized attack handling capability.
Solution Approach 2:
The patent introduces intelligent network management devices as intermediary components between the SDN controller and network switches. These intermediaries detect intrusions and send notifications to the controller, which then adjusts flow tables accordingly. This intermediary layer provides the missing intrusion detection capability without requiring the controller to handle all security functions directly.
2Ease of operation
If the SDN controller handles all network management functions, then centralized control is achieved, but resource wastage and delayed response times occur
Solution Approach 1:
The patent extracts intrusion detection and prevention functions from the SDN controller and places them in dedicated intelligent network management devices. This extraction relieves the controller of security-related processing tasks, reducing resource wastage and enabling faster response times for intrusion detection while maintaining centralized control through the controller's flow table management capability.
3Productivity
If conventional appliances are used for network management, then specific functions can be performed efficiently, but the system lacks flexibility in SDN architecture
Solution Approach 1:
The patent designs intelligent network management devices that can perform multiple functions including intrusion detection, prevention, and communication with the SDN controller. These devices are not limited to single-purpose appliances but can adapt to different network situations and work seamlessly within the SDN architecture, achieving both functional efficiency and architectural flexibility.
Data Source
AI summary
An intelligent network management device including an analytic unit, conducting an analysis according to received packets in order to determine whether a given event is occurred; and a processing unit, generating and sending a control instruction to a SDN controller to change configurations of a SDN switch when the analytic unit determined the given event has been occurred.


