Duplicate address detection method in SDN environment

The invention relates to a duplicate address detection method in an SDN environment. The method comprises the steps of after a host generates a new encryption address CGAx, performing NS broadcastingand naming as T1, and receiving a response NA and naming as T2; and checking an MAC address, and perf...

Full description

Saved in:
Bibliographic Details
Main Authors AN ZHONGLI, SONG GUANGJIA
Format Patent
LanguageChinese
English
Published 15.06.2018
Subjects
Online AccessGet full text

Cover

Loading…
More Information
Summary:The invention relates to a duplicate address detection method in an SDN environment. The method comprises the steps of after a host generates a new encryption address CGAx, performing NS broadcastingand naming as T1, and receiving a response NA and naming as T2; and checking an MAC address, and performing CGA verification, thus detecting the repeatability of the address. The feedback mechanism adopted by the invention utilizes concentrated control of an OC, and judges the truth of the MAC address through polling the OVS, the denial of service (DoS) attack applied to a duplicate address detection (DAD) process is achieved in the SDN, and the host CPU resource consumption is reduced. 本发明涉及种SDN环境中的重复地址检测方法,host生成新的加密地址CGAx后,进行NS广播,为T1,收到应答NA,为T2;检查MAC地址,进行CGA验证,从而来检测地址的重复性。本发明采用的反馈机制,反馈机制利用OC的集中控制,通过对OVS的轮询来辨别MAC地址的真实性,实现在软件定义网络SDN中,用于防止重复地址检测DAD过程中的拒绝服务DoS攻击,降低主机CPU资源消耗。
Bibliography:Application Number: CN201810048587