TY - GEN
T1 - REFLO
T2 - 2017 IEEE Region 10 Conference, TENCON 2017
AU - Visoottiviseth, Vasaka
AU - Lertviriyasawat, Suthasinee
AU - Suppiyatrakoon, Peerada
AU - Chitkornkitsil, Pattarajit
AU - Yamai, Nariyoshi
N1 - Publisher Copyright:
© 2017 IEEE.
PY - 2017/12/19
Y1 - 2017/12/19
N2 - To maintain the high level of security, many organizations use Deep Packet Inspection (DPI) firewalls to filter anomaly traffic coming into their networks. However, a DPI firewall with a large volume of traffic can lead to a high packet drop rate, high delay, and the poor network throughput. One possible way to relieve the firewall workload is to deploy multiple firewalls and select only suspicious traffic to check with the firewall. To perform this task, we apply the Software Defined Network (SDN) concept by using the OpenFlow standard. We develop a system called Reactive Firewall System with OpenFlow and Flow Monitoring System (REFLO) to distribute traffic to multiple firewalls and bypass non-suspicious traffic. REFLO system is able to select the most appropriate firewall for each data flow based on the contents of the flow and rules set by administrators on the OpenFlow controller. In addition, REFLO allows administrators to easily monitor the network by visualizing the flow summarization and flow statistics on our web application. To verify the effectiveness of our system, we deploy OpenFlow switches by using the low-cost Raspberry Pi boards and deploy OpenFlow controller and the web application on an Ubuntu PC. Experimental results also confirm that REFLO can achieve the lower average packet delay and higher throughput than that of the existing firewall system.
AB - To maintain the high level of security, many organizations use Deep Packet Inspection (DPI) firewalls to filter anomaly traffic coming into their networks. However, a DPI firewall with a large volume of traffic can lead to a high packet drop rate, high delay, and the poor network throughput. One possible way to relieve the firewall workload is to deploy multiple firewalls and select only suspicious traffic to check with the firewall. To perform this task, we apply the Software Defined Network (SDN) concept by using the OpenFlow standard. We develop a system called Reactive Firewall System with OpenFlow and Flow Monitoring System (REFLO) to distribute traffic to multiple firewalls and bypass non-suspicious traffic. REFLO system is able to select the most appropriate firewall for each data flow based on the contents of the flow and rules set by administrators on the OpenFlow controller. In addition, REFLO allows administrators to easily monitor the network by visualizing the flow summarization and flow statistics on our web application. To verify the effectiveness of our system, we deploy OpenFlow switches by using the low-cost Raspberry Pi boards and deploy OpenFlow controller and the web application on an Ubuntu PC. Experimental results also confirm that REFLO can achieve the lower average packet delay and higher throughput than that of the existing firewall system.
KW - Firewall
KW - Network Monitoring
KW - Openflow
KW - Software-Defined Network
UR - https://www.scopus.com/pages/publications/85044211666
U2 - 10.1109/TENCON.2017.8228240
DO - 10.1109/TENCON.2017.8228240
M3 - Conference contribution
AN - SCOPUS:85044211666
T3 - IEEE Region 10 Annual International Conference, Proceedings/TENCON
SP - 2273
EP - 2278
BT - TENCON 2017 - 2017 IEEE Region 10 Conference
PB - Institute of Electrical and Electronics Engineers Inc.
Y2 - 5 November 2017 through 8 November 2017
ER -