Automated Distribution Of Access Control Rules In Defense Layers Of An Enterprise Network

2019 IFIP/IEEE SYMPOSIUM ON INTEGRATED NETWORK AND SERVICE MANAGEMENT (IM)(2019)

引用 23|浏览6
暂无评分
摘要
In this demo paper we present a network management framework for the automated mitigation of multivector anomalies. Our approach leverages on Salt to define and distribute system-specific Access Control Rules to network devices and hosts, in a streamlined device-agnostic manner. Network devices are managed using NAPALM, a library offering high-level programmable interfaces via different southbound protocols, e.g. NETCONF, SSH, HTTP. Our Proof-of-Concept testbed incorporates two hardware devices, and two end hosts used accordingly as the attacker and the victim of a multi-vector DDoS attack. As part of the demo, we will generate a DDoS attack and showcase the capabilities offered by the proposed platform towards the attack mitigation.
更多
查看译文
关键词
DDoS Mitigation, Access Control Rules, Salt, Jinja2, NAPALM
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要