Intelligent Network Management Device for SDN Intrusion Handling

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional SDN controllers lack the capability to handle all network situations, especially persistent network attacks, as they are not designed to manage intrusion detection and prevention efficiently, leading to resource wastage and delayed response times.

Innovation Solution

An intelligent network management device with an analytic unit and a processing unit that analyzes packets to detect events and sends instructions to the SDN controller to adjust switch configurations, enabling real-time handling of network anomalies by the SDN switch, thereby offloading the intelligent network management device and enhancing network security.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If conventional SDN controllers are used to manage network security, then network control can be centralized, but the controller lacks sufficient capability to handle intrusion detection and prevention efficiently

Engineering Contradiction:
Improvecapability to handle network situationsVSAvoidhandling of network attacks
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The system divides network management functions into separate components: the SDN controller handles centralized control and flow table management, while dedicated intelligent network management devices handle intrusion detection and prevention. This segmentation allows each component to specialize in its function, resolving the contradiction between centralized control and specialized attack handling capability.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces intelligent network management devices as intermediary components between the SDN controller and network switches. These intermediaries detect intrusions and send notifications to the controller, which then adjusts flow tables accordingly. This intermediary layer provides the missing intrusion detection capability without requiring the controller to handle all security functions directly.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If the SDN controller handles all network management functions, then centralized control is achieved, but resource wastage and delayed response times occur

Engineering Contradiction:
Improvecentralized controlVSAvoidresponse time
Core Design Contradiction:
Ease of operationVSProductivity

Solution Approach 1:

The patent extracts intrusion detection and prevention functions from the SDN controller and places them in dedicated intelligent network management devices. This extraction relieves the controller of security-related processing tasks, reducing resource wastage and enabling faster response times for intrusion detection while maintaining centralized control through the controller's flow table management capability.

Inventive Principle:
Principle #2Taking out (Extraction)

3Productivity

If conventional appliances are used for network management, then specific functions can be performed efficiently, but the system lacks flexibility in SDN architecture

Engineering Contradiction:
Improveefficiency of specific functionsVSAvoidflexibility in network architecture
Core Design Contradiction:
ProductivityVSAdaptability or versatility

Solution Approach 1:

The patent designs intelligent network management devices that can perform multiple functions including intrusion detection, prevention, and communication with the SDN controller. These devices are not limited to single-purpose appliances but can adapt to different network situations and work seamlessly within the SDN architecture, achieving both functional efficiency and architectural flexibility.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS11121918B2Intelligent network management device and method of managing network
Publication Date: 2021.09.14 INTERNATIONAL BUSINESS MACHINE CORPORATION
  • US11121918B2 patent drawing
  • US11121918B2 patent drawing
  • US11121918B2 patent drawing

AI summary

An intelligent network management device including an analytic unit, conducting an analysis according to received packets in order to determine whether a given event is occurred; and a processing unit, generating and sending a control instruction to a SDN controller to change configurations of a SDN switch when the analytic unit determined the given event has been occurred.