A DATA DRIVEN ORCHESTRATION FRAMEWORK IN SOFTWARE DEFINED SECURITY

被引:0
|
作者
Wang, Weijia [1 ]
Qiu, Xiaofeng [1 ]
Sun, Li [1 ]
Zhao, Rui [1 ]
机构
[1] Beijing Univ Posts & Telecommun, Beijing 100876, Peoples R China
关键词
Software-Defined Security; cyber threat information; Security Device Orchestration Framework; STIX; uniform interfaces; orchestration scenario;
D O I
暂无
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Software-Defined Security (SDS), which provides a flexible and centralized security solution by abstracting the security mechanisms from the hardware layer into a software layer, attracts many researchers to study the detail of this conception. One of the key challenges of SDS is how to schedule and orchestrate security appliances according to huge and heterogeneous threat information, especially when they are still lack of standardized interfaces. In this paper, we present a data driven Security Device Orchestration Framework (SDOF) for SDS. In SDOF, we put forward uniform interfaces for security devices so that they could be orchestrated by software and their data could be collected and processed centrally. The complex Structured Threat information eXpression (STIX) ontology and corresponding tools are tailored for SDOF to standardize and centralize all data in SDS. These two achievements makes real-time dynamic orchestration possible in SDS. We also provide an orchestration scenario to demonstrate how SDOF works and evaluated its performance.
引用
收藏
页码:34 / 39
页数:6
相关论文
共 50 条
  • [41] An Optimization Framework for Data Collection in Software Defined Vehicular Networks
    Wijesekara, Patikiri Arachchige Don Shehan Nilmantha
    Sudheera, Kalupahana Liyanage Kushan
    Sandamali, Gammana Guruge Nadeesha
    Chong, Peter Han Joo
    [J]. SENSORS, 2023, 23 (03)
  • [42] ARP Overhead Reduction Framework for Software Defined Data Centers
    Safdar, Maliha
    Abbas, Yawar
    Iqbal, Waseem
    Umair, Mir Yasir
    Wakeel, Abdul
    [J]. JOURNAL OF NETWORK AND SYSTEMS MANAGEMENT, 2022, 30 (03)
  • [43] ARP Overhead Reduction Framework for Software Defined Data Centers
    Maliha Safdar
    Yawar Abbas
    Waseem Iqbal
    Mir Yasir Umair
    Abdul Wakeel
    [J]. Journal of Network and Systems Management, 2022, 30
  • [44] SoftMF: A Software Defined Moving Fingerprinting Framework for Proactive Security Policies Enforcement
    Luo, Yuebin
    Wang, Baosheng
    Wang, Xiaofeng
    Zhang, Bofeng
    [J]. 2016 INTERNATIONAL CONFERENCE ON INFORMATION ENGINEERING AND COMMUNICATIONS TECHNOLOGY (IECT 2016), 2016, : 515 - 520
  • [45] A Conceptual Framework for Improving the Software Security of Self- Driven Vehicles
    Yadav, Anurag
    Gupta, Himanshu
    Khatri, Sunil Kumar
    [J]. PROCEEDINGS 2019 AMITY INTERNATIONAL CONFERENCE ON ARTIFICIAL INTELLIGENCE (AICAI), 2019, : 893 - 897
  • [46] EDISON: A Blockchain-based Secure and Auditable Orchestration Framework for Multi-domain Software Defined Networks
    Balachandran, Chandrasekar
    Puneet, A. C.
    Ramachandran, Gowri
    Krishnamachari, Bhaskar
    [J]. 2020 IEEE INTERNATIONAL CONFERENCE ON BLOCKCHAIN (BLOCKCHAIN 2020), 2020, : 144 - 153
  • [47] Data-driven Software Security and its Hardware Support
    Erlingsson, Ulfar
    [J]. PROCEEDINGS OF THE 2017 WORKSHOP ON ATTACKS AND SOLUTIONS IN HARDWARE SECURITY (ASHES'17), 2017, : 3 - 3
  • [48] Data-Driven Information Plane in Software-Defined Networking
    Huang, Haojun
    Yin, Hao
    Min, Geyong
    Jiang, Hongbo
    Zhang, Junbao
    Wu, Yulei
    [J]. IEEE COMMUNICATIONS MAGAZINE, 2017, 55 (06) : 218 - 224
  • [49] SLA-Driven Software Orchestration in Industry 4.0
    Barletta, Marco
    Cinque, Marcello
    Di Martino, Catello
    [J]. IEEE Internet of Things Magazine, 2022, 5 (04): : 136 - 141
  • [50] Security in Software Defined Networks: A Survey
    Ahmad, Ijaz
    Namal, Suneth
    Ylianttila, Mika
    Gurtov, Andrei
    [J]. IEEE COMMUNICATIONS SURVEYS AND TUTORIALS, 2015, 17 (04): : 2317 - 2346