A framework for security enhancement in multitenant SDN-based datacentres.

International Journal of Security and Networks(2020)

引用 0|浏览8
暂无评分
摘要
Nowadays, there is a rising demand for enterprises to migrate datacentre into public cloud. This transfer has several drivers such as decreasing datacentre operational cost and increasing scalability. Moreover, it motivated cloud providers to construct more multitenant datacentres. On the other hand, cyber attacks against IT infrastructures are becoming sophisticated. In this paper, a framework is proposed to enhance security for software defined network (SDNs)-based multitenant datacentres. A novel mechanism is introduced to only forward suspicious traffic for deep packet inspection (DPI) without affecting any other traffic. Attack graphs are used to specify all possible attack scenarios against datacentre network. Framework proof of concept prototype is implemented using a mixed emulation and simulation environment. A typical multitenant datacentre network topology is used to test and evaluate framework performance. Performance evaluation results show framework feasibility and performance against attacks while not affecting delay sensitive traffic.
更多
查看译文
关键词
software defined network,SDN,datacentre,multitenancy,security,attack graph,deep packet inspection,DPI
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要