Citadel: Cyber threat intelligence assisted defense system for software-defined networks

被引:7
作者
Yurekten, Ozgur [1 ,2 ]
Demirci, Mehmet [1 ]
机构
[1] Gazi Univ, Dept Comp Engn, Ankara, Turkey
[2] TUBITAK BILGEM, Cyber Secur Inst, Ankara, Turkey
关键词
Cyber security; Cyber defense; Cyber threat intelligence; CTI; Software-defined networking; SDN; Network function virtualization; NFV; Service function chaining; SFC; SECURITY;
D O I
10.1016/j.comnet.2021.108013
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Defending networks is becoming more challenging due to the growing number and variety of cyber threats. On the other hand, network security professionals have new technologies and tools at their disposal. This paper focuses on a few of these technologies and investigates new ways to take advantage of them. To this end, we present Citadel, a novel security system utilizing cyber threat intelligence (CTI) to construct automated defense solutions in software-defined networking (SDN) environments. Citadel also incorporates network function virtualization (NFV) and service function chaining (SFC) to achieve flexible, cost-efficient, and proactive network defense. We examine CTI data to extract common attacker models and design security services as virtual network functions chained together using SFC to counter these threats. The modular and extensible nature of Citadel makes it suitable for incremental deployment in networks. Besides, we propose a new CTI data model to use as an extension of the existing CTI models for better compatibility with automated network defense. Extensive evaluations demonstrate that our proposals are applicable and effectively facilitate the management of agile defense in SDN/NFV-enabled networks.
引用
收藏
页数:25
相关论文
共 65 条
[61]  
Wang H, 2019, PROCEEDINGS OF 2019 IEEE 3RD INFORMATION TECHNOLOGY, NETWORKING, ELECTRONIC AND AUTOMATION CONTROL CONFERENCE (ITNEC 2019), P1602, DOI [10.1109/ITNEC.2019.8729425, 10.1109/itnec.2019.8729425]
[62]   SDN-based cyber defense: A survey [J].
Yurekten, Ozgur ;
Demirci, Mehmet .
FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2021, 115 :126-149
[63]  
Yürekten Ö, 2017, 2017 INTERNATIONAL CONFERENCE ON COMPUTER SCIENCE AND ENGINEERING (UBMK), P377, DOI 10.1109/UBMK.2017.8093415
[64]   Virtual IoT HoneyNets to Mitigate Cyberattacks in SDN/NFV-Enabled IoT Networks [J].
Zarca, Alejandro Molina ;
Bernabe, Jorge Bernal ;
Skarmeta, Antonio ;
Alcaraz Calero, Jose M. .
IEEE JOURNAL ON SELECTED AREAS IN COMMUNICATIONS, 2020, 38 (06) :1262-1277
[65]   SDN-Based Double Hopping Communication against Sniffer Attack [J].
Zhao, Zheng ;
Gong, Daofu ;
Lu, Bin ;
Liu, Fenlin ;
Zhang, Chuanhao .
MATHEMATICAL PROBLEMS IN ENGINEERING, 2016, 2016