Modeling for Endogenous Secure Domain Name System Based on Software Defined Networks

Quan Ren,Jiangxing Wu,Ziyong Li,Zheng Zhang
DOI: https://doi.org/10.1109/iaecst54258.2021.9695571
2021-01-01
Abstract:Cyberspace endogenous security (CES) aims to construct a new controllable and trusted system. It integrates the characteristics of dynamic heterogeneous redundant system, achieving the security defense and threat perception. This paper proposes an SDN-based Endogenous Secure Domain Name System (ESDNS) framework, and we adopt generalized stochastic Petri nets (GSPN) to describe system’s architectures and analyze the availability and awareness security of the ESDNS, and we analyze the influence of different attacking strength and recovering ability. Besides, we establish the prototype of ESDNS, the results of simulation show that the proposed method can effectively block the persistent attack of vulnerability backdoor, the cost of network communication delay and throughput performance is less than 10%, and the analysis of parameters gives the situation of degradation performance, ability of recovering and coordinated attack which has useful guidance to the engineering practice of endogenous secure systems.
What problem does this paper attempt to address?