Security Orchestrator Introducing a Security Orchestrator in the context of the ETSI NFV Reference Architecture

被引:44
|
作者
Jaeger, Bernd [1 ]
机构
[1] Nokia Networks, Secur Res, Munich, Germany
关键词
Security Orchestrator; Network Function Virtualization; Telco Cloud;
D O I
10.1109/Trustcom.2015.514
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
During the last two years, the ETSI NFV Management and Orchestration (MANO) working group has defined the ETSI NFV Reference Architecture. Network Function Virtualization (NFV) means the virtualization of telco network elements intending to get away from specialized or proprietary network appliances by leveraging standard IT virtualization technologies (clouds). One main intention of ETSI NFV MANO is controlling the NFV environment as much as possible through automation and orchestration. As security is a key requirement of virtual networking in the context of NFV environments, the same principles should apply to security management in ETSI NFV. Therefore it is proposed introducing a Security Orchestrator to meet this requirement. This paper describes the ETSI NFV Reference Architecture enhanced by the Security Orchestrator as well as the interworking of the Security Orchestrator with the already defined ETSI NFV orchestration and management entities like the NFV Orchestrator, the VNF Manager(s), the Element Manager(s) and the Virtual Infrastructure Manager(s). Additionally it defines the security orchestration tasks as well as the interfaces required to interact with the existing ETSI NFV Reference Architecture.
引用
收藏
页码:1255 / 1260
页数:6
相关论文
共 50 条
  • [1] A First Step Towards Security Extension for NFV Orchestrator
    Pattaranantakul, Montida
    Tseng, Yuchia
    He, Ruan
    Zhang, Zonghua
    Meddahi, Ahmed
    SDN-NFVSEC'17: PROCEEDINGS OF THE ACM INTERNATIONAL WORKSHOP ON SECURITY IN SOFTWARE DEFINED NETWORKS & NETWORK FUNCTION VIRTUALIZATION, 2017, : 25 - 30
  • [2] Orchestrator Model for System Security
    Goutam, Aradhana
    Rajkamal
    Ingle, Maya
    ADVANCES IN COMPUTING, COMMUNICATION AND CONTROL, 2011, 125 : 195 - +
  • [3] Towards a Security Reference Architecture for NFV
    Alnaim, Abdulrahman Khalid
    Alwakeel, Ahmed Mahmoud
    Fernandez, Eduardo B.
    SENSORS, 2022, 22 (10)
  • [4] The Role of Security Orchestrator in Network Slicing for Future Networks
    Wijethilaka, Shalitha
    Liyanage, Madhusanka
    JOURNAL OF COMMUNICATIONS AND NETWORKS, 2023, 25 (03) : 355 - 369
  • [5] OrchSec: An Orchestrator-Based Architecture For Enhancing Network-Security Using Network Monitoring And SDN Control Functions
    Zaalouk, Adel
    Khondoker, Rahamatullah
    Marx, Ronald
    Bayarou, Kpatcha
    2014 IEEE NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM (NOMS), 2014,
  • [6] Security as a Service - A Reference Architecture for SOA Security
    Memon, Mukhtiar
    Hafner, Michael
    Breu, Ruth
    SECURITY IN INFORMATION SYSTEMS, PROCEEDINGS, 2009, : 79 - 89
  • [7] A Security Reference Architecture for Blockchains
    Homoliak, Ivan
    Venugopalan, Sarad
    Hum, Qingze
    Szalachowski, Pawel
    2019 IEEE INTERNATIONAL CONFERENCE ON BLOCKCHAIN (BLOCKCHAIN 2019), 2019, : 390 - 397
  • [8] Introducing Virtual Security Functions into Latency-aware Placement for NFV Applications
    Tamim, Ibrahim
    Jammal, Manar
    Hawilo, Hassan
    Shami, Abdallah
    ICC 2020 - 2020 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS (ICC), 2020,
  • [9] Introduction and Analysis of SDN and NFV Security Architecture (SN-SECA)
    Bernardo, Danilo V.
    Chua, Bee Bee
    2015 IEEE 29TH INTERNATIONAL CONFERENCE ON ADVANCED INFORMATION NETWORKING AND APPLICATIONS (IEEE AINA 2015), 2015, : 796 - 801
  • [10] Security Management Architecture for NFV/SDN-Aware IoT Systems
    Molina Zarca, Alejandro
    Bernal Bernabe, Jorge
    Trapero, Ruben
    Rivera, Diego
    Villalobos, Jesus
    Skarmeta, Antonio
    Bianchi, Stefano
    Zafeiropoulos, Anastasios
    Gouvas, Panagiotis
    IEEE INTERNET OF THINGS JOURNAL, 2019, 6 (05) : 8005 - 8020