@inproceedings{a886c2509ea04499b75c9f5b96c84cc5,
title = "Flowtracker: A SDN Stateful Firewall Solution with Adaptive Connection Tracking and Minimized Controller Processing",
abstract = "The introduction of Software Defined Networking (SDN) enables possibilities for the next generation of network where the network logic operation is separated from the constraints of underlying hardware. However, the new architecture of SDN also exposes many security risks such as controller DoS attack, configuration channel compromise. This paper analyzes the challenges of stateful firewall realization in SDN environment and presents FlowTracker - a novel stateful firewall solution focusing on maintaining the accuracy and agility of stateful firewall with reduced controller processing and communication overhead between control and data plane. The GENI test bed experiments validates FlowTracker its stateful packet tracking and acceptable level of latency increase.",
keywords = "connection tracking, Firewall, GENI testbed, Overflow, POX controller, SDN, Stateful firewall",
author = "Tran, {Thuy Vinh} and Heejune Ahn",
note = "Publisher Copyright: {\textcopyright} 2016 IEEE.; 1st International Conference on Software Networking, ICSN 2016 ; Conference date: 23-05-2016 Through 26-05-2016",
year = "2016",
month = jun,
day = "29",
doi = "10.1109/ICSN.2016.7501925",
language = "English",
series = "2016 1st International Conference on Software Networking, ICSN 2016",
publisher = "Institute of Electrical and Electronics Engineers Inc.",
booktitle = "2016 1st International Conference on Software Networking, ICSN 2016",
}