A DATA DRIVEN ORCHESTRATION FRAMEWORK IN SOFTWARE DEFINED SECURITY

被引:0
|
作者
Wang, Weijia [1 ]
Qiu, Xiaofeng [1 ]
Sun, Li [1 ]
Zhao, Rui [1 ]
机构
[1] Beijing Univ Posts & Telecommun, Beijing 100876, Peoples R China
关键词
Software-Defined Security; cyber threat information; Security Device Orchestration Framework; STIX; uniform interfaces; orchestration scenario;
D O I
暂无
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Software-Defined Security (SDS), which provides a flexible and centralized security solution by abstracting the security mechanisms from the hardware layer into a software layer, attracts many researchers to study the detail of this conception. One of the key challenges of SDS is how to schedule and orchestrate security appliances according to huge and heterogeneous threat information, especially when they are still lack of standardized interfaces. In this paper, we present a data driven Security Device Orchestration Framework (SDOF) for SDS. In SDOF, we put forward uniform interfaces for security devices so that they could be orchestrated by software and their data could be collected and processed centrally. The complex Structured Threat information eXpression (STIX) ontology and corresponding tools are tailored for SDOF to standardize and centralize all data in SDS. These two achievements makes real-time dynamic orchestration possible in SDS. We also provide an orchestration scenario to demonstrate how SDOF works and evaluated its performance.
引用
收藏
页码:34 / 39
页数:6
相关论文
共 50 条
  • [31] Design and analysis of a robust security layer for software defined network framework
    Alhaj, Ali Nadim
    Patel, Narottam Das
    Singh, Ajeet
    Bondugula, Rohit Kumar
    Dar, Mohsin Furkh
    Ahamed, Jameel
    [J]. INTERNATIONAL JOURNAL OF SENSOR NETWORKS, 2024, 46 (01)
  • [32] Security Threats in the Data Plane of Software-Defined Networks
    Gao, Shang
    Li, Zecheng
    Xiao, Bin
    Wei, Guiyi
    [J]. IEEE NETWORK, 2018, 32 (04): : 108 - 113
  • [33] Security Solutions and Design Scenarios for Software Defined Data Centers
    Duttaluri, Sai Manogna
    Karimi, Bijan
    [J]. 2017 IEEE 8TH ANNUAL UBIQUITOUS COMPUTING, ELECTRONICS AND MOBILE COMMUNICATION CONFERENCE (UEMCON), 2017, : 341 - 351
  • [34] Policy and Resource Orchestration in Software-Defined Networks
    Wang, Anduo
    Wu, Jie
    [J]. 2018 4TH IEEE INTERNATIONAL CONFERENCE ON COLLABORATION AND INTERNET COMPUTING (CIC 2018), 2018, : 203 - 206
  • [35] An Experimental Software Defined Security Controller for Software Defined Network
    Al-Zewairi, Malek
    Suleiman, Dima
    Almajali, Sufyan
    [J]. 2017 FOURTH INTERNATIONAL CONFERENCE ON SOFTWARE DEFINED SYSTEMS (SDS), 2017, : 32 - 36
  • [36] Data-driven Software Security: Models and Methods
    Erlingsson, Ulfar
    [J]. 2016 IEEE 29TH COMPUTER SECURITY FOUNDATIONS SYMPOSIUM (CSF 2016), 2016, : 9 - 15
  • [37] Towards Data-driven Software-Defined Infrastructures
    Garcia Lopez, Pedro
    Gracia Tinedo, Raul
    Montresor, Alberto
    [J]. 2ND INTERNATIONAL CONFERENCE ON CLOUD FORWARD: FROM DISTRIBUTED TO COMPLETE COMPUTING, 2016, 97 : 144 - 147
  • [38] Risk-Driven Security Metrics Development for Software-Defined Networking
    Savola, Reijo M.
    Savolainen, Pekka
    [J]. ECSA 2018: PROCEEDINGS OF THE 12TH EUROPEAN CONFERENCE ON SOFTWARE ARCHITECTURE: COMPANION PROCEEDINGS, 2018,
  • [39] Intent-Driven Security Policy Management for Software-Defined Systems
    Chowdhary, Ankur
    Sabur, Abdulhakim
    Vadnere, Neha
    Huang, Dijiang
    [J]. IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2022, 19 (04): : 5208 - 5223
  • [40] Software Defined Membrane: Policy-Driven Edge and Internet of Things Security
    Villari, Massimo
    Fazio, Maria
    Dustdar, Schahram
    Rana, Omer
    Chen, Lydia
    Ranjan, Rajiv
    [J]. IEEE CLOUD COMPUTING, 2017, 4 (04): : 92 - 99