A real-time attack defense framework for 5G network slicing

被引:19
|
作者
Bonfim, Michel [1 ]
Santos, Marcelo [2 ]
Dias, Kelvin [1 ]
Fernandes, Stenio [1 ]
机构
[1] Univ Fed Pernambuco UFPE, Ctr Informat CIn, Av Jornalista Anibal Fernandes S-N,Cidade Univ, BR-50740560 Recife, PE, Brazil
[2] Inst Fed Educ Ciencia & Tecnol Sertao Pernambucan, Salgueiro, PE, Brazil
来源
SOFTWARE-PRACTICE & EXPERIENCE | 2020年 / 50卷 / 07期
基金
美国国家科学基金会;
关键词
5G; bloom filter; cybersecurity; network function virtualization; network slice; P4; SECURITY;
D O I
10.1002/spe.2800
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Network Slicing (NS) is a key enabler to support 5G network services on-demand. However, since NS is a result of the recent advancement in Software-Defined Networking and Network Function Virtualization, it introduces new security issues which include attacks against an NS instance within an operator network and interslice security threats. In this scenario, identifying and mitigating attacks in real-time is of paramount importance to improve security aspects. However, it is far from being straightforward. Therefore, this work proposes the FrameRTP4, a P4-based framework that aims to deliver real-time attack detection and mitigation mechanisms in 5G NS scenarios. For this, it provides a P4-based switch that implements an Service Function Chaining protocol layer, an efficient and scalable Access Control List for the detection and mitigation of known attacks, and a monitoring system aiming to reduce the overhead induced on the control channel. Furthermore, it delivers an orchestrator that aims to control all switches in order to enable lifecycle management of NS instances and P4 table rules. Besides, it also performs some autonomous tasks such as the wildcard rules generation and the detection of new threats by using machine learning algorithms. Preliminary results point to the potential benefits of FrameRTP4 to be part of a 5G NS infrastructure.
引用
收藏
页码:1228 / 1257
页数:30
相关论文
共 50 条
  • [41] Real-time Aggregation Framework in a 5G SDN Self-Management Environment
    Pedro, Rui
    Sargento, Susana
    Neves, Pedro
    Perez, Manuel Gil
    Perez, Gregorio Martinez
    Bernini, Giacomo
    Wang, Qi
    Alcaraz-Calero, Jose M.
    [J]. 2018 IEEE WIRELESS COMMUNICATIONS AND NETWORKING CONFERENCE (WCNC), 2018,
  • [42] Real-time 5G Technology Development Platform
    Gemici, O. F.
    Kara, F.
    Hokelek, I.
    Salim, I. H.
    Asmer, H.
    Koksal, M. I.
    Telli, A.
    Yazar, A.
    Arslan, H.
    [J]. 2017 25TH SIGNAL PROCESSING AND COMMUNICATIONS APPLICATIONS CONFERENCE (SIU), 2017,
  • [43] Secure5G: A Deep Learning Framework Towards a Secure Network Slicing in 5G and Beyond
    Thantharate, Anurag
    Paropkari, Rahul
    Walunj, Vijay
    Beard, Cory
    Kankariya, Poonam
    [J]. 2020 10TH ANNUAL COMPUTING AND COMMUNICATION WORKSHOP AND CONFERENCE (CCWC), 2020, : 852 - 857
  • [44] Real-time 5G Radio Wave Visualizer
    Imai, Tetsuro
    Inomata, Minoru
    Kitao, Koshiro
    Okumura, Yukihiko
    [J]. 2018 INTERNATIONAL SYMPOSIUM ON ANTENNAS AND PROPAGATION (ISAP), 2018,
  • [45] IBN Slicing: Intent -Based Network Slicing Framework for 5G Networks using Deep Learn ng
    Abbas, Khizar
    Afaq, Muhammad
    Khan, Talha Ahmed
    Mehmood, Asif
    Song, Wang-Cheol
    [J]. APNOMS 2020: 2020 21ST ASIA-PACIFIC NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM (APNOMS), 2020, : 19 - 24
  • [46] DBNS: A Distributed Blockchain-Enabled Network Slicing Framework for 5G Networks
    Togou, Mohammed Amine
    Bi, Ting
    Dev, Kapal
    McDonnell, Kevin
    Milenovic, Aleksandar
    Tewari, Hitesh
    Muntean, Gabriel-Miro
    [J]. IEEE COMMUNICATIONS MAGAZINE, 2020, 58 (11) : 90 - 96
  • [47] Complex network theory to model 5G Network Slicing
    Ficzere, Daniel
    [J]. PROCEEDINGS OF THE IEEE/IFIP NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM 2022, 2022,
  • [48] A framework for joint admission control, resource allocation and pricing for network slicing in 5G
    Ben-Ameur, Walid
    Cano, Lorela
    Chahed, Tijani
    [J]. 2021 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2021,
  • [49] A Zero Touch Emulation Framework for Network Slicing Management in a 5G Core Testbed
    Vittal, Shwetha
    Sarkar, Sourav
    Prashanth, P. S.
    Franklin, Antony A.
    [J]. PROCEEDINGS OF THE 2021 17TH INTERNATIONAL CONFERENCE ON NETWORK AND SERVICE MANAGEMENT (CNSM 2021): SMART MANAGEMENT FOR FUTURE NETWORKS AND SERVICES, 2021, : 521 - 523
  • [50] DI5GUISE: A highly Dynamic Framework for Real-Time Simulated 5G Evaluation
    Quinlan, Jason J.
    Ramakrishnan, K. K.
    Sreenan, Cormac J.
    [J]. 2019 25TH IEEE INTERNATIONAL SYMPOSIUM ON LOCAL AND METROPOLITAN AREA NETWORKS (IEEE LANMAN 2019), 2019,