{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,30]],"date-time":"2026-06-30T15:37:59Z","timestamp":1782833879503,"version":"3.54.5"},"publisher-location":"Cham","reference-count":36,"publisher":"Springer International Publishing","isbn-type":[{"value":"9783319989884","type":"print"},{"value":"9783319989891","type":"electronic"}],"license":[{"start":{"date-parts":[[2018,1,1]],"date-time":"2018-01-01T00:00:00Z","timestamp":1514764800000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2018,1,1]],"date-time":"2018-01-01T00:00:00Z","timestamp":1514764800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2018]]},"DOI":"10.1007\/978-3-319-98989-1_23","type":"book-chapter","created":{"date-parts":[[2018,8,6]],"date-time":"2018-08-06T18:14:14Z","timestamp":1533579254000},"page":"463-484","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":38,"title":["Stealthy Probing-Based Verification (SPV): An Active Approach to Defending Software Defined Networks Against Topology Poisoning Attacks"],"prefix":"10.1007","author":[{"given":"Amir","family":"Alimohammadifar","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Suryadipta","family":"Majumdar","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Taous","family":"Madi","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Yosr","family":"Jarraya","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Makan","family":"Pourzandi","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Lingyu","family":"Wang","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Mourad","family":"Debbabi","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2018,8,7]]},"reference":[{"key":"23_CR1","unstructured":"OpenDaylight (2017). https:\/\/www.opendaylight.org\/"},{"key":"23_CR2","doi-asserted-by":"crossref","unstructured":"Al-Fares, M., Loukissas, A., Vahdat, A.: A scalable, commodity data center network architecture. In: ACM SIGCOMM Computer Communication Review, vol. 38, pp. 63\u201374 (2008)","DOI":"10.1145\/1402946.1402967"},{"key":"23_CR3","doi-asserted-by":"crossref","unstructured":"Alharbi, T., Portmann, M., Pakzad, F.: The (in)security of topology discovery in software defined networks. In: 40th Conference on Local Computer Networks (LCN), pp. 502\u2013505. IEEE (2015)","DOI":"10.1109\/LCN.2015.7366363"},{"key":"23_CR4","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"229","DOI":"10.1007\/978-3-319-11599-3_14","volume-title":"Secure IT Systems","author":"M Antikainen","year":"2014","unstructured":"Antikainen, M., Aura, T., S\u00e4rel\u00e4, M.: Spook in your network: attacking an SDN with a compromised OpenFlow switch. In: Bernsmed, K., Fischer-H\u00fcbner, S. (eds.) NordSec 2014. LNCS, vol. 8788, pp. 229\u2013244. Springer, Cham (2014). https:\/\/doi.org\/10.1007\/978-3-319-11599-3_14"},{"key":"23_CR5","doi-asserted-by":"crossref","unstructured":"Azzouni, A., Boutaba, R., Trang, N.T.M., Pujolle, G.: sOFTDP: secure and efficient topology discovery protocol for SDN. arXiv preprint arXiv:1705.04527 (2017)","DOI":"10.1109\/NOMS.2018.8406229"},{"key":"23_CR6","doi-asserted-by":"crossref","unstructured":"Azzouni, A., Trang, N.T.M., Boutaba, R., Pujolle, G.: Limitations of OpenFlow topology discovery protocol. arXiv preprint arXiv:1705.00706 (2017)","DOI":"10.1109\/MedHocNet.2017.8001642"},{"key":"23_CR7","doi-asserted-by":"crossref","unstructured":"Bifulco, R., Cui, H., Karame, G.O., Klaedtke, F.: Fingerprinting software-defined networks. In: 23rd International Conference on Network Protocols (ICNP) (2015)","DOI":"10.1109\/ICNP.2015.26"},{"key":"23_CR8","unstructured":"Bui, T., et al.: Analysis of topology poisoning attacks in software-defined networking (2015)"},{"key":"23_CR9","doi-asserted-by":"crossref","unstructured":"Chi, P.W., Kuo, C.T., Guo, J.W., Lei, C.L.: How to detect a compromised SDN switch. In: 1st IEEE Conference on Network Softwarization (NetSoft) (2015)","DOI":"10.1109\/NETSOFT.2015.7116184"},{"key":"23_CR10","doi-asserted-by":"crossref","unstructured":"Dhawan, M., Poddar, R., Mahajan, K., Mann, V.: SPHINX: detecting security attacks in software-defined networks. In: NDSS (2015)","DOI":"10.14722\/ndss.2015.23064"},{"key":"23_CR11","unstructured":"Erickson, D.: Beacon (2013). https:\/\/openflow.stanford.edu\/display\/Beacon\/Home"},{"key":"23_CR12","unstructured":"Floodlight, P.: Open source software for building software-defined networks (2017). http:\/\/www.projectfloodlight.org\/floodlight\/"},{"key":"23_CR13","unstructured":"Foundation, O.N.: OpenFlow switch specification version 1.3.5 (2014). https:\/\/www.opennetworking.org\/software-defined-standards\/specifications\/"},{"key":"23_CR14","volume-title":"Software Defined Networks: A Comprehensive Approach","author":"P Goransson","year":"2016","unstructured":"Goransson, P., Black, C., Culver, T.: Software Defined Networks: A Comprehensive Approach. Morgan Kaufmann, Burlington (2016)"},{"issue":"3","key":"23_CR15","doi-asserted-by":"publisher","first-page":"105","DOI":"10.1145\/1384609.1384625","volume":"38","author":"N Gude","year":"2008","unstructured":"Gude, N., Koponen, T., Pettit, J., Pfaff, B., Casado, M., McKeown, N., Shenker, S.: NOX: towards an operating system for networks. ACM SIGCOMM Comput. Commun. Rev. 38(3), 105\u2013110 (2008)","journal-title":"ACM SIGCOMM Comput. Commun. Rev."},{"key":"23_CR16","doi-asserted-by":"crossref","unstructured":"Hong, S., Xu, L., Wang, H., Gu, G.: Poisoning network visibility in software-defined networks: new attacks and countermeasures. In: NDSS (2015)","DOI":"10.14722\/ndss.2015.23283"},{"issue":"4","key":"23_CR17","doi-asserted-by":"publisher","first-page":"1955","DOI":"10.1109\/COMST.2014.2320094","volume":"16","author":"Y Jarraya","year":"2014","unstructured":"Jarraya, Y., Madi, T., Debbabi, M.: A survey and a layered taxonomy of software-defined networking. IEEE Commun. Surv. Tutor. 16(4), 1955\u20131980 (2014)","journal-title":"IEEE Commun. Surv. Tutor."},{"issue":"1","key":"23_CR18","doi-asserted-by":"publisher","first-page":"303","DOI":"10.1109\/COMST.2016.2597193","volume":"19","author":"S Khan","year":"2017","unstructured":"Khan, S., Gani, A., Wahab, A.W.A., Guizani, M., Khan, M.K.: Topology discovery in software defined networks: threats, taxonomy, and state-of-the-art. IEEE Commun. Surv. Tutor. 19(1), 303\u2013324 (2017)","journal-title":"IEEE Commun. Surv. Tutor."},{"key":"23_CR19","doi-asserted-by":"crossref","unstructured":"Kim, H., Ju, H.: Efficient method for inferring a firewall policy. In: 13th Asia-Pacific Network Operations and Management Symposium (APNOMS) (2011)","DOI":"10.1109\/APNOMS.2011.6077015"},{"issue":"1","key":"23_CR20","doi-asserted-by":"publisher","first-page":"14","DOI":"10.1109\/JPROC.2014.2371999","volume":"103","author":"D Kreutz","year":"2015","unstructured":"Kreutz, D., Ramos, F.M., Verissimo, P.E., Rothenberg, C.E., Azodolmolky, S., Uhlig, S.: Software-defined networking: a comprehensive survey. Proc. IEEE 103(1), 14\u201376 (2015)","journal-title":"Proc. IEEE"},{"key":"23_CR21","doi-asserted-by":"crossref","unstructured":"Lantz, B., Heller, B., McKeown, N.: A network in a laptop: rapid prototyping for software-defined networks. In: Proceedings of the 9th ACM SIGCOMM Workshop on Hot Topics in Networks, p. 19. ACM (2010)","DOI":"10.1145\/1868447.1868466"},{"key":"23_CR22","unstructured":"Leng, J., Zhou, Y., Zhang, J., Hu, C.: An inference attack model for flow table capacity and usage: exploiting the vulnerability of flow table overflow in software-defined network. arXiv preprint arXiv:1504.03095 (2015)"},{"key":"23_CR23","doi-asserted-by":"crossref","unstructured":"Lin, P.C., Li, P.C., Nguyen, V.L.: Inferring OpenFlow rules by active probing in software-defined networks. In: 19th International Conference on Advanced Communication Technology (ICACT) (2017)","DOI":"10.23919\/ICACT.2017.7890123"},{"issue":"2","key":"23_CR24","doi-asserted-by":"publisher","first-page":"69","DOI":"10.1145\/1355734.1355746","volume":"38","author":"N McKeown","year":"2008","unstructured":"McKeown, N., et al.: OpenFlow: enabling innovation in campus networks. ACM SIGCOMM Comput. Commun. Rev. 38(2), 69\u201374 (2008)","journal-title":"ACM SIGCOMM Comput. Commun. Rev."},{"key":"23_CR25","doi-asserted-by":"crossref","unstructured":"Medved, J., Varga, R., Tkacik, A., Gray, K.: Opendaylight: towards a model-driven SDN controller architecture. In: 15th International Symposium on a World of Wireless, Mobile and Multimedia Networks (WoWMoM) (2014)","DOI":"10.1109\/WoWMoM.2014.6918985"},{"key":"23_CR26","unstructured":"Mininet: An instant virtual network on your laptop (or other PC) (2017). http:\/\/mininet.org\/"},{"key":"23_CR27","unstructured":"OpenStack: Open source software for creating private and public clouds (2017). https:\/\/www.openstack.org\/"},{"key":"23_CR28","doi-asserted-by":"crossref","unstructured":"Pakzad, F., Portmann, M., Tan, W.L., Indulska, J.: Efficient topology discovery in software defined networks. In: 2014 8th International Conference on Signal Processing and Communication Systems (ICSPCS), pp. 1\u20138. IEEE (2014)","DOI":"10.1109\/ICSPCS.2014.7021050"},{"key":"23_CR29","unstructured":"POX: The pox controller (2013). https:\/\/github.com\/noxrepo\/pox"},{"key":"23_CR30","unstructured":"Scapy: Packet manipulation program (2017). http:\/\/www.secdev.org\/projects\/scapy\/"},{"key":"23_CR31","doi-asserted-by":"crossref","unstructured":"Shin, S., Gu, G.: Attacking software-defined networks: a first feasibility study. In: Proceedings of the Second ACM SIGCOMM Workshop on Hot Topics in Software Defined Networking, pp. 165\u2013166. ACM (2013)","DOI":"10.1145\/2491185.2491220"},{"key":"23_CR32","doi-asserted-by":"crossref","unstructured":"Skowyra, R., et al.: Effective topology tampering attacks and defenses in software-defined networks. In: Proceedings of the 48th Annual IEEE\/IFIP International Conference on Dependable Systems and Networks (DSN 2018), June 2018","DOI":"10.1109\/DSN.2018.00047"},{"key":"23_CR33","unstructured":"vSwitch, O.: Production quality, multilayer open virtual switch (2016). http:\/\/openvswitch.org\/"},{"issue":"1","key":"23_CR34","doi-asserted-by":"publisher","first-page":"27","DOI":"10.1109\/COMST.2014.2330903","volume":"17","author":"W Xia","year":"2015","unstructured":"Xia, W., Wen, Y., Foh, C.H., Niyato, D., Xie, H.: A survey on software-defined networking. IEEE Commun. Surv. Tutor. 17(1), 27\u201351 (2015)","journal-title":"IEEE Commun. Surv. Tutor."},{"issue":"1","key":"23_CR35","doi-asserted-by":"publisher","first-page":"640","DOI":"10.1109\/COMST.2016.2626784","volume":"19","author":"W Xia","year":"2017","unstructured":"Xia, W., Zhao, P., Wen, Y., Xie, H.: A survey on data center networking (DCN): infrastructure and operations. IEEE Commun. Surv. Tutor. 19(1), 640\u2013656 (2017)","journal-title":"IEEE Commun. Surv. Tutor."},{"key":"23_CR36","doi-asserted-by":"crossref","unstructured":"Zhang, M., Bi, J., Bai, J., Dong, Z., Li, Y., Li, Z.: FTGuard: a priority-aware strategy against the flow table overflow attack in SDN. In: Proceedings of the SIGCOMM Posters and Demos, pp. 141\u2013143. ACM (2017)","DOI":"10.1145\/3123878.3132015"}],"container-title":["Lecture Notes in Computer Science","Computer Security"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-319-98989-1_23","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,7,6]],"date-time":"2025-07-06T06:42:32Z","timestamp":1751784152000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-319-98989-1_23"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2018]]},"ISBN":["9783319989884","9783319989891"],"references-count":36,"URL":"https:\/\/doi.org\/10.1007\/978-3-319-98989-1_23","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2018]]},"assertion":[{"value":"7 August 2018","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"ESORICS","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"European Symposium on Research in Computer Security","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Barcelona","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Spain","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2018","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"3 September 2018","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"9 September 2018","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"23","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"esorics2018","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/esorics2018.upc.edu\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"This content has been made available to all.","name":"free","label":"Free to read"}]}}