What type of information does the sdn controller need


Problem

A self-propagation malware works as follows. When a machine is infected, it will initiate TCP connections with other machines that it has connected with before. Then 240KB data will be transferred to the target to infect it. Assume that the traffic is NOT encrypted.

Explain, if we are using software defined networks (SDN), how can we detect and mitigate such attacks? Discuss from the following aspects:

i. What type of information does the SDN controller need to collect from network traffic and analyze to detect the anomaly?

ii. After detection, what will the controller do to stop further malware propagation?

Request for Solution File

Ask an Expert for Answer!!
Computer Engineering: What type of information does the sdn controller need
Reference No:- TGS03277310

Expected delivery within 24 Hours