Dergiler / Turkish Journal of Electrical Engineering and Computer Sciences / 2019 / Cilt: 27 - Sayı: 5
SoftSwitch: a centralized honeypot-based security approach using software-defined switching for secure management of VLAN networks
- Sayfa
- 3309–3325
- DOI
- —
Abstract
Honeypot systems are traps for intruders which simulate real systems such as web, application, and databaseservers used in information systems. Using these systems, unauthorized and malicious access can be efficiently detected.Honeypot is an entity which acts as a source of valued information and its behavior can be monitored. The inability ordifficulty of intrusion detection is a serious security problem in networks including virtual local area network (VLAN).According to the literature, the use of honeypots for intrusion detection and prevention in networks including VLAN isstrongly recommended.In this paper, in order to provide security and to detect unauthorized and malicious access to the VLAN, acentralized honeypot-based approach with a software-defined switching is proposed. With the developed and proposedhoneypot-based intrusion detection and prevention approach, reduction in false alarm, network traffic, and cybersecuritycost, as well as centralized control, was provided. The proposed system has been run in GNS3 simulation software andsuccessful results have been obtained by reducing false alarm level, network traffic, and cybersecurity cost. The numericalresults of the attacks that were detected based on the port and protocol using SoftSwitch are detailed in the performanceevaluation subsection.