SAFE: Software-defined Authentication FramEwork

被引:1
|
作者
Kamath, Aditya V. [1 ]
Sudarshan, S. [1 ]
Kataoka, Kotaro [1 ]
Vijayvergiya, Nishant [1 ]
Reddy, G. Bhargav [1 ]
Phatale, Samrat [1 ]
机构
[1] Indian Inst Technol Hyderabad, Dept Comp Sci & Engn, Sangareddy, Telangana, India
关键词
Authentication; SDN; Network Security; Access Control;
D O I
10.1145/3012695.3012703
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Expanding variety of end devices connected to the Internet has introduced high demand to flexibly authenticate and grant them the necessary access to the network. However, it is not realistic to expect of all the end devices, including less capable and low-cost devices like sensors or embedded systems, to satisfy the requirement of integrated authentication procedure like 802.1x. We propose Software-defined Authentication FramEwork (SAFE) that enables 1) isolation of unauthenticated devices and 2) access control with more flexible modes of authentication. By systematically separating authentication and access control, the networks can have multiple options for authenticating end devices according to their capability, while access control and policy enforcement can be done on a unified platform using SDN. SAFE uses a combined approach of MAC-based identification and location awareness, i.e., the port number and a switch DPID in SDN, to keep unauthenticated devices isolated and still be able to communicate with their affordable authentication server. We examined SAFE in the following 3 scenarios: 1) an emulation environment, 2) a live test bed using production SDN switches and 3) a mixed network with both SDN and non-SDN switches. This paper also implements an alternative and practical mode of authentication expecting IoT devices, which would benefit the most from SAFE.
引用
收藏
页码:57 / 63
页数:7
相关论文
共 50 条
  • [31] Software-defined operations
    Meirosu, Catalin
    Pentikousis, Kostas
    Kind, Mario
    Gonzalez Prieto, Alberto
    [J]. INTERNATIONAL JOURNAL OF NETWORK MANAGEMENT, 2016, 26 (05) : 334 - 335
  • [32] Software-Defined Cluster
    Nie, Hua
    Yang, Xiao-Jun
    Liu, Tao-Ying
    [J]. JOURNAL OF COMPUTER SCIENCE AND TECHNOLOGY, 2015, 30 (02) : 252 - 258
  • [33] Software-Defined Networking
    Zhili Sun
    Jiandong Li
    Kun Yang
    [J]. ZTE Communications, 2014, 12 (02) : 1 - 2
  • [34] Software-Defined Cluster
    Hua Nie
    Xiao-Jun Yang
    Tao-Ying Liu
    [J]. Journal of Computer Science and Technology, 2015, 30 : 252 - 258
  • [35] Software-Defined Edge Cloud Framework for Resilient Multitenant Applications
    Liu, Kaikai
    Ravindrarao, Nagthej Manangi
    Gurudutt, Abhishek
    Kamaal, Tejeshwar
    Divakara, Chinmayi
    Prabhakaran, Praveen
    [J]. WIRELESS COMMUNICATIONS & MOBILE COMPUTING, 2019, 2019
  • [36] Athena: A Framework for Scalable Anomaly Detection in Software-Defined Networks
    Lee, Seunghyeon
    Kim, Jinwoo
    Shin, Seungwon
    Porras, Phillip
    Yegneswaran, Vinod
    [J]. 2017 47TH ANNUAL IEEE/IFIP INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS AND NETWORKS (DSN), 2017, : 249 - 260
  • [37] SDCF: A Software-Defined Cyber Foraging Framework for Cloudlet Environment
    Nithya, S.
    Sangeetha, M.
    Prethi, K. N. Apinaya
    Sahoo, Kshira Sagar
    Panda, Sanjaya Kumar
    Gandomi, Amir H.
    [J]. IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2020, 17 (04): : 2423 - 2435
  • [38] Towards an Integrated Framework for Managing Software-Defined Networking Models
    Barlowe, Scott
    Stanley, Miles
    Lowry, Noah
    Tipton, Cade
    Cruz, Gatlin
    [J]. SOUTHEASTCON 2023, 2023, : 23 - 30
  • [39] Toward a flexible and scalable monitoring framework in Software-Defined Networks
    Xuan Thien Phan
    Fukuda, Kensuke
    [J]. 2017 31ST IEEE INTERNATIONAL CONFERENCE ON ADVANCED INFORMATION NETWORKING AND APPLICATIONS WORKSHOPS (IEEE WAINA 2017), 2017, : 403 - 408
  • [40] The Framework of an Software-defined Gyroscope and Stochasitic Error Modeling Analysis
    Tong, Kaixiang
    Gao, Yang
    [J]. 2020 7TH IEEE INTERNATIONAL SYMPOSIUM ON INERTIAL SENSORS AND SYSTEMS (INERTIAL 2020), 2020,