Detection and prevention of Man-in-The-Middle attack in cloud computing using Openstack

Najat Tissir, Noureddine Aboutabit, Said El Kafhali

Abstract


This paper proposes a new technique designed to prevent and detect address resolution protocol (ARP) spoofing attacks in general, and specifically Man-in-the-Middle (MitM) attacks, within the context of cloud computing. The solution focuses on establishing appropriate flow filtering rules based on parameters such as 'time feature' and internet control message protocol '(ICMP) protocol'. The tests were conducted using the Openstack platform. One of the key benefits of this proposed approach is the improved performance in effectively detecting a significant number of malicious packets. We implemented this solution on the Openstack platform and conducted evaluations to demonstrate its efficacy. The results confirm that our method achieves superior performance in detecting MitM attacks, with a packet detection ratio (PDR) of 60.4%. Moving forward, this work will contribute to protecting cloud environments from a large number of MitM attacks.

Keywords


Address resolution protocol; Cloud computing; Internet control message protocol; Man-in-the-Middle attack; Openstack; Packet detection ratio; Prevent and detect

Full Text:

PDF


DOI: https://doi.org/10.11591/eei.v14i1.8103

Refbacks

  • There are currently no refbacks.


Creative Commons License
This work is licensed under a Creative Commons Attribution-ShareAlike 4.0 International License.

Bulletin of EEI Stats

Bulletin of Electrical Engineering and Informatics (BEEI)
ISSN: 2089-3191, e-ISSN: 2302-9285
This journal is published by the Institute of Advanced Engineering and Science (IAES) in collaboration with Intelektual Pustaka Media Utama (IPMU).