A Framework for Dynamic Configuration of TLS Connections Based on Standards

被引:0
作者
Javier Pastor-Galindo
Gabriel López-Millán
Rafael Marín-López
Fernando Pereñíguez-García
Óscar Cánovas
机构
[1] University of Murcia,Department of Information and Communications Engineering
[2] University Defense Center - Spanish Air Force Academy,Department of Engineering and Applied Technologies
[3] University of Murcia,Department of Computer Engineering
来源
Journal of Network and Systems Management | 2022年 / 30卷
关键词
TLS; Management; SDN; YANG;
D O I
暂无
中图分类号
学科分类号
摘要
The Transport Layer Security (TLS) protocol is widely used for protecting end-to-end communications between network peers (applications or nodes). However, the administrators usually have to configure parameters (e.g., cryptography algorithms or authentication credentials) to establish TLS connections manually. However, this way of managing security connections becomes infeasible when the number of network peers is high. This paper proposes a TLS management framework that configures and manages TLS connections in a dynamic and autonomous manner. The solution is based on well-known standardized protocols and models that allow providing the necessary configuration parameters to establish a TLS connection between two network nodes. Nowadays, this is required in several application scenarios such as virtual private networks, virtualized network functions, or service function chains. Our framework is based on standard elements of the Software Defined Networking paradigm, widely adopted to provide flexibility to network management, such as for the scenarios aforementioned. The proposed framework has been implemented in a proof of concept to validate the suitability of the proposed solution to manage the dynamic configuration of TLS connections. The experimental results confirm that the implementation of this framework enables an operable and flexible procedure to manage TLS connections between network nodes in different scenarios.
引用
收藏
相关论文
共 22 条
[1]  
Ahmad S(2020)Scalability, consistency, reliability and security in SDN controllers: a survey of diverse SDN controllers J. Netw. Syst. Manag. 29 9-1609
[2]  
Mir AH(2020)SDN-based traffic management middleware for spontaneous WMNs J. Netw. Syst. Manag. 28 1575-818
[3]  
Bellavista P(2017)Data plane programmability beyond openflow: opportunities and challenges for network and service operations and management J. Netw. Syst. Manag. 25 784-327
[4]  
Dolci A(2020)Service function chaining in 5G beyond networks: challenges and open research issues IEEE Netw. 34 320-76
[5]  
Giannelli C(2021)A survey of data center consolidation in cloud computing systems Comput. Sci. Rev. 103 14-374
[6]  
Padalino Montenero DD(2015)Software-defined networking: a comprehensive survey Proc. IEEE 25 321-undefined
[7]  
da Costa Cordeiro WL(2017)A survey on software defined networking: architecture for next generation network J. Netw. Syst. Manag. undefined undefined-undefined
[8]  
Marques JA(undefined)undefined undefined undefined undefined-undefined
[9]  
Gaspary LP(undefined)undefined undefined undefined undefined-undefined
[10]  
Hantouti H(undefined)undefined undefined undefined undefined-undefined