arrow
返回

Risk based Security Enforcement in Software Defined Network

delete2018-09-01
delete8
PRE
AI
B
Bata Krishna Tripathy *
D
Debi Prasad Das
S
Swagat Kumar Jena
P
Padmalochan Bera
DOI:10.1016/j.cose.2018.07.010delete
delete原文链接
delete原文求助
delete分享
delete收藏
摘要

摘要

En 中文
Software Defined Network (SDN) paradigm provides intelligent and efficient management of different network control functions (NF) depending on changes in traffic behavior, service providers' requirements and application context. However, the logical centralization of controllers' functions opens up challenges towards enforcing security perimeter over the underlying network and the assets involved. In this paper, we propose a risk assessment model for pro-active secure flow control and routing of traffic in SDN. The proposed model determines threat value of different SDN entities by analyzing vulnerability and exposure with respect to Common Vulnerability Scoring System (CVSS). The risk of a given traffic is calculated as cumulative threat values of the SDN entities that guides the flow and routing control functions in generating secure flow rules for the forwarding switches. The efficacy of the proposed model is demonstrated through extensive case studies of an enterprise network. (C) 2018 Elsevier Ltd. All rights reserved.
Keyword:
Software Defined Network (SDN)
Network control functions (NF)
Common Vulnerability Scoring System (CVSS)
Vulnerability
Exposure
Threat
Risk
AI总结

AI总结

对已上传原文的论文进行重点信息的提取,主要内容包括:简要概述、研究摘要、背景介绍、关键亮点、图文解析、展望与总结。

期刊

C
Computers and Security
IF:
5.4
论文数:
4.6K
被引数:
1.4W

机构

I
indian institute of technology (iit) - bhubaneswar
学者数:
788
论文数: 725
被引数: 1
I
indian institute of technology system (iit system)
学者数:
9.5W
论文数: 9.9W
被引数: 93