Automated Security Management for Virtual Services

被引:0
|
作者
Repetto, M. [1 ]
Carrega, A. [1 ]
Yusupov, J. [2 ]
Valenza, F. [2 ]
Risso, F. [2 ]
Lamanna, G. [3 ]
机构
[1] CNIT, S2N Lab, Genoa, Italy
[2] Politecn Torino, DAUIN, Turin, Italy
[3] Infocom Srl, Genoa, Italy
关键词
D O I
10.1109/nfv-sdn47374.2019.9040069
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
The virtualization of applications and network functions facilitates the dynamic creation of compound services, automating both the provisioning of computing/networking/storage resources and their life-cycle management. Virtualization of security appliances is a common approach to protect such services, but can neither offer broad visibility across the whole deployed service nor implement coordinated and fine-grained enforcement actions. This paper proposes a novel security framework based on the integration of lightweight and programmable monitoring and enforcement hooks in each virtual function, which are collectively controlled by a common logic for prevention, detection, reaction, and mitigation of security threats. Our framework keeps direct control over the functionalities of the security hooks, and leverages standard orchestration tools for management actions on the service graph. It can be automatically instantiated by common orchestration operations. hence seamlessly integrating with the deployment process of service graphs.
引用
收藏
页数:2
相关论文
共 50 条
  • [21] Automated Risk Management Based Software Security Vulnerabilities Management
    Althar, Raghavendra Rao
    Samanta, Debabrata
    Kaur, Manjit
    Singh, Dilbag
    Lee, Heung-No
    IEEE ACCESS, 2022, 10 : 90597 - 90608
  • [22] Security for Shared Electric and Automated Mobility Services in Smart Cities
    Vaidya, Binod
    Mouftah, Hussein T.
    IEEE SECURITY & PRIVACY, 2021, 19 (01) : 24 - 33
  • [23] Automated vulnerability management through web services
    Tian, HT
    Huang, LS
    Shan, JL
    Chen, GL
    GRID AND COOPERATIVE COMPUTING, PT 1, 2004, 3032 : 1067 - 1070
  • [24] Enhancing Security, Scalability and Flexibility of Virtual Private LAN Services
    Liyanage, Madhusanka
    Ylianttila, Mika
    Gurtov, Andrei
    2017 IEEE INTERNATIONAL CONFERENCE ON COMPUTER AND INFORMATION TECHNOLOGY (CIT), 2017, : 286 - 291
  • [25] Toward web services profiles for trust and security in Virtual Organisations
    Arenas, AE
    Djordjevic, I
    Dimitrakos, T
    Titkov, L
    Claessens, J
    Geuer-Pollmann, C
    Lupu, EC
    Tuptuk, N
    Wesner, S
    Schubert, L
    Collaborative Networks and Their Breeding Environments, 2005, 186 : 175 - 182
  • [26] Information Security Risk Management in a World of Services
    Lalanne, Vincent
    Munier, Manuel
    Gabillon, Alban
    2013 ASE/IEEE INTERNATIONAL CONFERENCE ON SOCIAL COMPUTING (SOCIALCOM), 2013, : 586 - 593
  • [27] Satellite services for disaster management and security applications
    Koudelka, Otto
    Schrotter, P.
    ACTA ASTRONAUTICA, 2007, 60 (12) : 986 - 991
  • [28] Automatic Management Services for Remote/Virtual Laboratories
    Pastor-Vargas, R.
    Tobarra, Ll.
    Ros, S.
    Hernndez, R.
    Robles, A.
    Castro, M.
    INTERNATIONAL JOURNAL OF ONLINE ENGINEERING, 2014, 10 (06) : 43 - 49
  • [29] Integration of management services for remote/virtual laboratories
    Pastor-Vargas, R.
    Tobarra, Ll.
    Ros, S.
    Hernandez, R.
    Caminero, A.
    Robles, A.
    Castro, M.
    Diaz, G.
    Sancristobal, E.
    Tawfik, M.
    2014 IEEE GLOBAL ENGINEERING EDUCATION CONFERENCE (EDUCON), 2014, : 605 - 610
  • [30] Virtual Job Management and Scheduling for Media Services
    Tzolas, Ioannis
    Tselios, Christos
    2017 IEEE 22ND INTERNATIONAL WORKSHOP ON COMPUTER AIDED MODELING AND DESIGN OF COMMUNICATION LINKS AND NETWORKS (CAMAD), 2017,