Software Defined Perimeter Monitoring and Blockchain-Based Verification of Policy Mapping

被引:0
|
作者
Akbar, Waleed [1 ]
Rivera, Javier Jose Diaz [1 ]
Ahmed, Khan Talha [1 ]
Muhammad, Afaq [1 ]
Song, Wang-Cheol [1 ]
机构
[1] Jeju Natl Univ, Dept Comp Engn, Jeju Si, South Korea
关键词
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
With the emergence of Zero Trust (ZT) Architecture, industry leaders have been drawn to the technology because of its potential to handle a high level of security threats. The Zero Trust Architecture (ZTA) is paving the path for a security industrial revolution by eliminating location-based implicant access and focusing on asset, user, and resource security. Software Defined Perimeter (SDP) is a secure overlay network technology that can be used to implement a Zero Trust framework. SDP is a next-generation network technology that allows network architecture to be hidden from the outside world. It also hides the overlay communication from the underlay network by employing encrypted communications. With encrypted information, detecting abnormal behavior of entities on an overlay network becomes exceedingly difficult. Therefore, an automated system is required. We proposed a method in this paper for understanding the normal behavior of deployed polices by mapping network usage behavior to the policy. An Apache Spark collects and processes the streaming overlay monitoring data generated by the built-in fabric API in order to do this mapping. It sends extracted metrics to Prometheus for storage, and then uses the data for machine learning training and prediction. The cluster-id of the link that it belongs to is predicted by the model, and the cluster-ids are mapped onto the policies. To validate the legitimacy of policy, the labeled polices hash is compared to the actual polices hash that is obtained from blockchain. Unverified policies are notified to the SDP controller for additional action, such as defining new policy behavior or marking uncertain policies.
引用
收藏
页码:407 / 410
页数:4
相关论文
共 50 条
  • [21] BCNBI: A Blockchain-Based Security Framework for Northbound Interface in Software-Defined Networking
    Algarni, Sultan
    Eassa, Fathy
    Almarhabi, Khalid
    Algarni, Abdullah
    Albeshri, Aiiad
    ELECTRONICS, 2022, 11 (07)
  • [22] Blockchain-based Mobility Verification of Connected Cars
    Chiasserini, Carla Fabiana
    Giaccone, Paolo
    Malnati, Giovanni
    Macagno, Michele
    Sviridov, German
    2020 IEEE 17TH ANNUAL CONSUMER COMMUNICATIONS & NETWORKING CONFERENCE (CCNC 2020), 2020,
  • [23] A Scalable Blockchain-Based Integrity Verification Scheme
    Zhou, Zequan
    Luo, Xiling
    Bai, Yi
    Wang, Xiaochao
    Liu, Feng
    Liu, Gang
    Xu, Yifu
    WIRELESS COMMUNICATIONS & MOBILE COMPUTING, 2022, 2022
  • [24] A Blockchain-based Verification for Sharing Data Securely
    Liu, Yu
    Chen, Haopeng
    Hu, Fei
    PROCEEDINGS OF 2017 IEEE INTERNATIONAL CONFERENCE ON PROGRESS IN INFORMATICS AND COMPUTING (PIC 2017), 2017, : 249 - 253
  • [25] Blockchain-Based Result Verification for Computation Offloading
    Korbel, Benjamin
    Sigwart, Marten
    Frauenthaler, Philip
    Sober, Michael
    Schulte, Stefan
    SERVICE-ORIENTED COMPUTING (ICSOC 2021), 2021, 13121 : 99 - 115
  • [26] Blockchain-based Maritime Monitoring System
    Freire, Warlley Paulo
    Melo Jr, Wilson S.
    do Nascimento, Vinicius D.
    de Sa, Alan Oliveira
    2021 IEEE INTERNATIONAL WORKSHOP ON METROLOGY FOR THE SEA (METROSEA 2021), 2021, : 394 - 399
  • [27] CarbonEdge: Collaborative Blockchain-Based Monitoring, Reporting, and Verification of Greenhouse Gas Emissions on the Edge
    Seidenfad, Karl
    Greiner, Maximilian
    Biermann, Jan
    Lechner, Ulrike
    INNOVATIONS FOR COMMUNITY SERVICES, I4CS 2023, 2023, 1876 : 123 - 147
  • [28] CarbonEdge: Demonstrating Blockchain-based Monitoring, Reporting and Verification of Greenhouse Gas Emissions on the Edge
    Seidenfad, Karl
    Biermann, Jan
    Lechner, Ulrike
    2023 IEEE INTERNATIONAL CONFERENCE ON BLOCKCHAIN AND CRYPTOCURRENCY, ICBC, 2023,
  • [29] DevID: Blockchain-based Portfolios for Software Developers
    de Vos, Martijn
    Olsthoorn, Mitchell
    Pouwelse, Johan
    2019 IEEE INTERNATIONAL CONFERENCE ON DECENTRALIZED APPLICATIONS AND INFRASTRUCTURES (DAPPCON), 2019, : 158 - 163
  • [30] Blockchain-Based Software Systems: Taxonomy Development
    Alashaikh, Lamia
    2021 IEEE INTERNATIONAL CONFERENCE ON BLOCKCHAIN (BLOCKCHAIN 2021), 2021, : 491 - 498