Enabling Virtual AAA Management in SDN-Based IoT Networks

被引:32
|
作者
Molina Zarca, Alejandro [1 ]
Garcia-Carrillo, Dan [2 ]
Bernal Bernabe, Jorge [1 ]
Ortiz, Jordi [1 ]
Marin-Perez, Rafael [2 ]
Skarmeta, Antonio [1 ]
机构
[1] Univ Murcia, Dept Informat & Commun Engn, E-30100 Murcia, Spain
[2] Odin Solut, Dept Res & Innovat, Murcia 30820, Spain
基金
欧盟地平线“2020”;
关键词
IoT; SDN; NFV; channel protection; bootstrapping; AAA; security policies;
D O I
10.3390/s19020295
中图分类号
O65 [分析化学];
学科分类号
070302 ; 081704 ;
摘要
The increase of Software Defined Networks (SDN) and Network Function Virtualization (NFV) technologies is bringing many security management benefits that can be exploited at the edge of Internet of Things (IoT) networks to deal with cyber-threats. In this sense, this paper presents and evaluates a novel policy-based and cyber-situational awareness security framework for continuous and dynamic management of Authentication, Authorization, Accounting (AAA) as well as Channel Protection virtual security functions in IoT networks enabled with SDN/NFV. The virtual AAA, including network authenticators, are deployed as VNF (Virtual Network Function) dynamically at the edge, in order to enable scalable device's bootstrapping and managing the access control of IoT devices to the network. In addition, our solution allows distributing dynamically the necessary crypto-keys for IoT Machine to Machine (M2M) communications and deploy virtual Channel-protection proxys as VNFs, with the aim of establishing secure tunnels among IoT devices and services, according to the contextual decisions inferred by the cognitive framework. The solution has been implemented and evaluated, demonstrating its feasibility to manage dynamically AAA and channel protection in SDN/NFV-enabled IoT scenarios.
引用
收藏
页数:24
相关论文
共 50 条
  • [1] SDMob: SDN-Based Mobility Management for IoT Networks
    Rabet, Iliar
    Selvaraju, Shunmuga Priyan
    Fotouhi, Hossein
    Alves, Mario
    Vahabi, Maryam
    Balador, Ali
    Bjorkman, Mats
    [J]. JOURNAL OF SENSOR AND ACTUATOR NETWORKS, 2022, 11 (01)
  • [2] Explainable Security in SDN-Based IoT Networks
    Sarica, Alper Kaan
    Angin, Pelin
    [J]. SENSORS, 2020, 20 (24) : 1 - 30
  • [3] Dynamic Failover for SDN-based Virtual Networks
    Ko, Kyungchan
    Son, Dongho
    Hyun, Jonghwan
    Li, Jian
    Han, Yoonseon
    Hong, James Won-Ki
    [J]. 2017 IEEE CONFERENCE ON NETWORK SOFTWARIZATION (IEEE NETSOFT), 2017,
  • [4] SDN-based management of heterogeneous home networks
    Soetens, Niels
    Famaey, Jeroen
    Verstappen, Matthias
    Latre, Steven
    [J]. 2015 11TH INTERNATIONAL CONFERENCE ON NETWORK AND SERVICE MANAGEMENT (CNSM), 2015, : 402 - 405
  • [5] Handover Management in SDN-based Mobile Networks
    Kuklinski, Slawomir
    Li, Yuhong
    Khoa Truong Dinh
    [J]. 2014 GLOBECOM WORKSHOPS (GC WKSHPS), 2014, : 194 - 200
  • [6] FENet: An SDN-Based Scheme for Virtual Network Management
    Liu, Kun
    Wo, Tianyu
    Cui, Lei
    Shi, Bin
    Xu, Jie
    [J]. 2014 20TH IEEE INTERNATIONAL CONFERENCE ON PARALLEL AND DISTRIBUTED SYSTEMS (ICPADS), 2014, : 249 - 256
  • [7] SDN-based Service Automation for IoT
    Uddin, Mostafa
    Mukherjee, Sarit
    Chang, Hyunseok
    Lakshman, T. V.
    [J]. 2017 IEEE 25TH INTERNATIONAL CONFERENCE ON NETWORK PROTOCOLS (ICNP), 2017,
  • [8] SDN-Based Secure Architecture for IoT
    Mishra, Shailendra
    [J]. INTERNATIONAL JOURNAL OF KNOWLEDGE AND SYSTEMS SCIENCE, 2020, 11 (04) : 1 - 16
  • [9] Dynamic Resource Management in SDN-based Virtualized Networks
    Mijumbi, Rashid
    Serrat, Joan
    Rubio-Loyola, Javier
    Bouten, Niels
    De Turck, Filip
    Latre, Steven
    [J]. 2014 10TH INTERNATIONAL CONFERENCE ON NETWORK AND SERVICE MANAGEMENT (CNSM), 2014, : 412 - 417
  • [10] A Management Model for SDN-based Data Center Networks
    Xu, Yifei
    Yan, Yue
    Dai, Zhuyun
    Wang, Xiaolin
    [J]. 2014 IEEE CONFERENCE ON COMPUTER COMMUNICATIONS WORKSHOPS (INFOCOM WKSHPS), 2014, : 113 - +