Testbed for Security Orchestration in a Network Function Virtualization Environment

被引:0
|
作者
Kalliola, Aapo [1 ,3 ]
Lal, Shankar [1 ,3 ]
Ahola, Kimmo [2 ]
Oliver, Ian [1 ]
Miche, Yoan [1 ]
Holtmanns, Silke [1 ]
机构
[1] Nokia Bell Labs, Murray Hill, NJ 07974 USA
[2] VTT Tech Res Ctr Finland, Espoo, Finland
[3] Aalto Univ, Espoo, Finland
关键词
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
We present a testbed implementation for the development, evaluation and demonstration of security orchestration in a network function virtualization environment. As a specific scenario, we demonstrate how an intelligent response to DDoS and various other kinds of targeted attacks can be formulated such that these attacks and future variations can be mitigated. We utilise machine learning to characterise normal network traffic, attacks and responses, then utilise this information to orchestrate virtualized network functions around affected components to isolate these components and to capture, redirect and filter traffic (e.g. honeypotting) for additional analysis. This allows us to maintain a high level of network quality of service to given network functions and components despite adverse network conditions.
引用
收藏
页码:178 / 181
页数:4
相关论文
共 50 条
  • [21] State of the Art and Research Challenges in the Security Technologies of Network Function Virtualization
    Wu, Xiaochun
    Hou, Kaiyu
    Leng, Xue
    Li, Xing
    Yu, Yinbo
    Wu, Bo
    Chen, Yan
    IEEE INTERNET COMPUTING, 2020, 24 (01) : 25 - 35
  • [22] NvCloudIDS: A Security Architecture to Detect Intrusions at Network and Virtualization Layer in Cloud Environment
    Mishra, Preeti
    Pilli, Emmanuel S.
    Varadharajan, Vijay
    Tupakula, Udaya
    2016 INTERNATIONAL CONFERENCE ON ADVANCES IN COMPUTING, COMMUNICATIONS AND INFORMATICS (ICACCI), 2016, : 56 - 62
  • [23] Information Security Modeling for the Operation of a Novel Highly Trusted Network in a Virtualization Environment
    Chang, Jung-Sook
    Jeon, Yong-Hee
    Sim, Sohyun
    Kang, An Na
    INTERNATIONAL JOURNAL OF DISTRIBUTED SENSOR NETWORKS, 2015,
  • [24] The development and future prospects of network virtualization service infrastructure [I]: Advanced network virtualization and orchestration and management technologies
    Nakao, Akihiro
    Yamada, Kazuhisa
    Journal of the Institute of Electronics, Information and Communication Engineers, 2016, 99 (12): : 1184 - 1190
  • [25] SCADAVT-A Framework for SCADA Security Testbed Based on Virtualization Technology
    Almalawi, Abdulmohsen
    Tari, Zahir
    Khalil, Ibrahim
    Fahad, Adil
    PROCEEDINGS OF THE 2013 38TH ANNUAL IEEE CONFERENCE ON LOCAL COMPUTER NETWORKS (LCN 2013), 2013, : 639 - 646
  • [26] Dynamic architecture based on network virtualization and distributed orchestration for management of autonomic network
    Saadon, Guy
    Haddad, Yoram
    Simoni, Noemie
    2019 15TH INTERNATIONAL CONFERENCE ON NETWORK AND SERVICE MANAGEMENT (CNSM), 2019,
  • [27] Open Orchestration Cloud Radio Access Network (OOCRAN) Testbed
    Floriach-Pigem, Marti
    Xercavins-Torregrosa, Guillem
    Marojevic, Vuk
    Gelonch-Bosch, Antoni
    COMPANION PROCEEDINGS OF THE 10TH INTERNATIONAL CONFERENCE ON UTILITY AND CLOUD COMPUTING (UCC'17 COMPANION), 2017, : 15 - 20
  • [28] Applying Machine Learning to Service Assurance in Network Function Virtualization Environment
    Zhou, Zhu
    Zhang, Tong
    2018 FIRST IEEE INTERNATIONAL CONFERENCE ON ARTIFICIAL INTELLIGENCE FOR INDUSTRIES (AI4I 2018), 2018, : 112 - 115
  • [29] Security challenges with network functions virtualization
    Firoozjaei, Mahdi Daghmehchi
    Jeong, Jaehoon
    Jo, Hoon
    Kim, Hyoungshick
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2017, 67 : 315 - 324
  • [30] NETWORK FUNCTION VIRTUALIZATION AS A PART OF MODULAR VIRTUALIZED INFRASTRUCTURE IN LAB ENVIRONMENT
    Sac, V.
    Havas, L.
    Srpak, D.
    Tomicic, E.
    EDULEARN19: 11TH INTERNATIONAL CONFERENCE ON EDUCATION AND NEW LEARNING TECHNOLOGIES, 2019, : 8233 - 8240