A software defined security scheme based on SDN environment

被引:2
|
作者
Xu, Xiaolong [1 ]
Hu, Liuyun [2 ]
机构
[1] Nanjing Univ Posts & Telecommun, Sch Comp Sci, Nanjing, Jiangsu, Peoples R China
[2] Chinese Acad Sci, State Key Lab Informat Secur, Beijing, Peoples R China
来源
2017 INTERNATIONAL CONFERENCE ON CYBER-ENABLED DISTRIBUTED COMPUTING AND KNOWLEDGE DISCOVERY (CYBERC) | 2017年
基金
中国国家自然科学基金;
关键词
SDN; virtualization; Software Definded Security;
D O I
10.1109/CyberC.2017.52
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
This paper analyzes the insufficiency of traditional network architecture in the current information era firstly, and introduces the concept of Software Defined Networking (SDN). Then it describes the problems existing in the traditional security protection by analyzing the importance of network security. On the basis of SDN, the paper analyzes the effects of the SDN technology on the traditional network security protection. Along with the idea of software defined, it puts forward the concept and the main idea of software defined security. By analyzing the classic architecture of software defined network, it is concluded that SDN technology was used to construct new network architecture to realize development and application of networkvirtualization. The current new network security architectures are analyzed, and it is concluded that the current security resolution schemes cannot adapt to the development of SDN. Therefore, it is necessary to build a new security architecture, which contains centralized management based on the SDN environment. The paper makes a detailed analysis of the architecture and the internal structure of security controller in the control layer. Then according to the security mechanism, the data flow process of the network security protection is described in detail. Finally, the paper analyzes the performance of the security mechanism in three security scenes and comes up with shortage of the mechanism.
引用
收藏
页码:504 / 512
页数:9
相关论文
共 50 条
  • [31] A Heuristic Approach for the CCLP Problem in Software Defined Network (SDN)
    Veeramani, S.
    Mahammad, Noor Sk
    INTERNETWORKING INDONESIA, 2018, 10 (01): : 3 - 8
  • [32] Quality of Service (QoS) in Software Defined Networking (SDN): A survey
    Karakus, Murat
    Durresi, Arjan
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2017, 80 : 200 - 218
  • [33] A Survey on Large-Scale Software Defined Networking (SDN) Testbeds: Approaches and Challenges
    Huang, Tao
    Yu, F. Richard
    Zhang, Chen
    Liu, Jiang
    Zhang, Jiao
    Liu, Yunjie
    IEEE COMMUNICATIONS SURVEYS AND TUTORIALS, 2017, 19 (02): : 891 - 917
  • [34] Software Defined Networking Architecture, Security and Energy Efficiency: A Survey
    Rawat, Danda B.
    Reddy, Swetha R.
    IEEE COMMUNICATIONS SURVEYS AND TUTORIALS, 2017, 19 (01): : 325 - 346
  • [35] Privacy preservation and security management in VANET based to Software Defined Network
    Assafra, Khadija
    Alaya, Bechir
    Abid, Mohamed
    2022 IEEE WIRELESS COMMUNICATIONS AND NETWORKING CONFERENCE (WCNC), 2022, : 96 - 101
  • [36] SDN Based Security Services
    ZHANG Yunyong
    XU Lei
    TAO Ye
    ZTECommunications, 2018, 16 (04) : 9 - 14
  • [37] Research and Implementation of Resource Scheduling Mechanism Based On Software Defined Security
    Wang, Zelang
    Shou, Guochu
    Hu, Yihong
    Guo, Zhigang
    2016 INTERNATIONAL CONFERENCE ON CYBER-ENABLED DISTRIBUTED COMPUTING AND KNOWLEDGE DISCOVERY PROCEEDINGS - CYBERC 2016, 2016, : 372 - 376
  • [38] Machine Learning-Based DDoS Mitigation Framework for Unmanned Aerial Vehicles (UAV) Environment using Software-Defined Networks (SDN)
    Gupta, Brij B.
    Gaurav, Akshat
    Arya, Varsha
    Chui, Kwok Tai
    IEEE CONFERENCE ON GLOBAL COMMUNICATIONS, GLOBECOM, 2023, : 2178 - 2183
  • [39] Software Defined Networks: Challenges for SDN as an Infrastructure for Intelligent Transport Systems based on Vehicular Networks
    Meneguette, Rodolfo Ipolito
    16TH ANNUAL INTERNATIONAL CONFERENCE ON DISTRIBUTED COMPUTING IN SENSOR SYSTEMS (DCOSS 2020), 2020, : 205 - 212
  • [40] Realizing the Quality of Service (QoS) in Software-Defined Networking (SDN) Based Cloud Infrastructure
    Govindarajan, Kannan
    Meng, Kong Chee
    Ong, Hong
    Tat, Wong Ming
    Sivanand, Sridhar
    Leong, Low Swee
    2014 2ND INTERNATIONAL CONFERENCE ON INFORMATION AND COMMUNICATION TECHNOLOGY (ICOICT), 2014,