Abstract:
Firewall provides filtering packets
among network devices according to the security
policy. As the firewall is an essential devices in
traditional network, it is also a crucial
application in the security of modern network,
Software Defined Network (SDN), which is the
physical separation of the network control plane
from the forwarding plane, and where a control
plane controls several devices by controller.
This paper focus on developing a Ping Flood
and Ping of Death attacks protection firewall
application running on Open Network
Operating System (ONOS) SDN controller. The
firewall application enhances the oneping
application in order to permit ping packet's
source and destination only predefined in the list
of security policy prohibiting the reconnaissance
from attackers. Hence, this application
overcomes the weakness of existing oneping
application that allow any ping once.