Token as a Service for Software-Defined Zero Trust Networking

被引:0
|
作者
Erel-Ozcevik, Muge [1 ]
机构
[1] Manisa Celal Bayar Univ, Software Engn Deparment, Acarlar st, TR-45400 Manisa, Turkiye
关键词
Zero trust network; Software defined network; Authentication; Software as a service; Genetic algorithm;
D O I
10.1007/s10922-024-09894-w
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Zero Trust Networking (ZTN) is more challenging in a multi-tenant environment. To meet different service requirements of multi-tenants and minimize the risk of physical deployment with low operational and capital expenditures, investments in Software-Defined Networks (SDN) based ZTN have been increased. The research question is whether is there any SDN-based architecture to maintain a trusted zone in a complex multi-tenant environment, where each network equipment can be dynamically configurable by many SDN controllers in a distributed way without security breach. Therefore, this paper proposes a novel Software-Defined Zero Trust Networking (SDZTN) decoupling Cyber and Physical layers. To maintain a trusted zone, it proposes a novel Token as a Service (TaaS) that executes genetic algorithm-based service optimization and generates unique tokens by its solution and using a simply implemented JSON Web Token (JWT). It reduces authentication/authorization load in cloud servers by simplifying and distributing databases in each OpenFlow switch. According to the proposed Zero Trust Evaluation (ZTE) metric considering the token similarity and infection probability, SDZTN results in 25% higher trust than the conventional one. It also overcomes several infection attacks which have the potential to revolutionize token management systems by providing decentralized, easily implementable, and trusted solutions.
引用
收藏
页数:20
相关论文
共 50 条
  • [21] Modeling of a 3DTV service in the Software-defined Networking architecture
    Wilczewski, Grzegorz
    PHOTONICS APPLICATIONS IN ASTRONOMY, COMMUNICATIONS, INDUSTRY, AND HIGH-ENERGY PHYSICS EXPERIMENTS 2014, 2014, 9290
  • [22] A Novel Floodless Service Discovery Mechanism Designed for Software-Defined Networking
    Wang Jian
    Huang Tao
    Liu Jiang
    Liu Yunjie
    CHINA COMMUNICATIONS, 2014, 11 (02) : 12 - 25
  • [23] A software-defined networking approach to improve service provision in residential networks
    Flores Moyano, Ricardo
    Fernandez, David
    Bellido, Luis
    Gonzalez, Carlos
    INTERNATIONAL JOURNAL OF NETWORK MANAGEMENT, 2017, 27 (06)
  • [24] Investigation of Uninterrupted Service Live Migration Using Software-Defined Networking
    Govindaraj, Keerthana
    Saha, Mamia
    Artemenko, Alexander
    Kirstaedter, Andreas
    PROCEEDINGS OF THE 2019 INTERNATIONAL CONFERENCE ON NETWORKED SYSTEMS (NETSYS 2019), 2019, : 54 - 59
  • [25] An Integrated Approach for Monitoring Service Level Parameters of Software-Defined Networking
    Xu, Hui
    Chen, Hongwei
    INTERNATIONAL JOURNAL OF FUTURE GENERATION COMMUNICATION AND NETWORKING, 2015, 8 (06): : 197 - 204
  • [26] VNCS: Virtual Network Connectivity as a Service A Software-Defined Networking Approach
    Shamseddine, Maha
    Elhajj, Imad
    Chehab, Ali
    Kayssi, Ayman
    2016 IEEE INTERNATIONAL CONFERENCE ON CLOUD ENGINEERING WORKSHOP (IC2EW), 2016, : 30 - 35
  • [27] Software-Defined Networking load distribution technique for an internet service provider
    Al-Darrab, Abdulaziz
    Al-Darrab, Ibrahim
    Rushdi, Ali
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2020, 155
  • [28] An Method of Service Composition with Optimal Resources Allocation in Software-Defined Networking
    Tkachova, Olena
    Duravkin, Ievgen
    Muhi-Aldeen, Hassan Mohamed
    2017 4TH INTERNATIONAL SCIENTIFIC-PRACTICAL CONFERENCE PROBLEMS OF INFOCOMMUNICATIONS-SCIENCE AND TECHNOLOGY (PIC S&T), 2017, : 425 - 429
  • [29] Distributed Denial of Service Attacks in Software-Defined Networking with Cloud Computing
    Yan, Qiao
    Yu, F. Richard
    IEEE COMMUNICATIONS MAGAZINE, 2015, 53 (04) : 52 - 59
  • [30] Mobility-aware Software-Defined Service-Centric Networking
    Rodrigues, Diego O.
    Braun, Torsten
    Maia, Guilherme
    Villas, Leandro
    2022 31ST INTERNATIONAL CONFERENCE ON COMPUTER COMMUNICATIONS AND NETWORKS (ICCCN 2022), 2022,