Security Orchestrator Introducing a Security Orchestrator in the context of the ETSI NFV Reference Architecture

被引:44
|
作者
Jaeger, Bernd [1 ]
机构
[1] Nokia Networks, Secur Res, Munich, Germany
关键词
Security Orchestrator; Network Function Virtualization; Telco Cloud;
D O I
10.1109/Trustcom.2015.514
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
During the last two years, the ETSI NFV Management and Orchestration (MANO) working group has defined the ETSI NFV Reference Architecture. Network Function Virtualization (NFV) means the virtualization of telco network elements intending to get away from specialized or proprietary network appliances by leveraging standard IT virtualization technologies (clouds). One main intention of ETSI NFV MANO is controlling the NFV environment as much as possible through automation and orchestration. As security is a key requirement of virtual networking in the context of NFV environments, the same principles should apply to security management in ETSI NFV. Therefore it is proposed introducing a Security Orchestrator to meet this requirement. This paper describes the ETSI NFV Reference Architecture enhanced by the Security Orchestrator as well as the interworking of the Security Orchestrator with the already defined ETSI NFV orchestration and management entities like the NFV Orchestrator, the VNF Manager(s), the Element Manager(s) and the Virtual Infrastructure Manager(s). Additionally it defines the security orchestration tasks as well as the interfaces required to interact with the existing ETSI NFV Reference Architecture.
引用
收藏
页码:1255 / 1260
页数:6
相关论文
共 50 条
  • [31] Application of security reference architecture to Big Data ecosystems in an industrial scenario
    Moreno, Julio
    Gomez, Javier
    Serrano, Manuel A.
    Fernandez, Eduardo B.
    Fernandez-Medina, Eduardo
    SOFTWARE-PRACTICE & EXPERIENCE, 2020, 50 (08): : 1520 - 1538
  • [32] Policy Based Virtualised Security Architecture for SDN/NFV enabled 5G Access Networks
    Siddiqui, M. S.
    Escalona, E.
    Trouva, E.
    Kourtis, M. A.
    Kritharidis, D.
    Katsaros, K.
    Spirou, S.
    Canales, C.
    Lorenzo, M.
    2016 IEEE CONFERENCE ON NETWORK FUNCTION VIRTUALIZATION AND SOFTWARE DEFINED NETWORKS (NFV-SDN), 2016, : 44 - 49
  • [33] Using agents towards providing security on a context-aware architecture
    Vecchiato, Daniel
    Araujo, Nelcileno
    Maciel, Cristiano
    Viterbo, Jose
    El, Amal
    1ST INTERNATIONAL WORKSHOP ON AGENTS & CYBERSECURITY, 2014,
  • [34] Towards context-aware security: An authorization architecture for Intranet environments
    Wullems, C
    Looi, M
    Clark, A
    SECOND IEEE ANNUAL CONFERENCE ON PERVASIVE COMPUTING AND COMMUNICATIONS WORKSHOPS, PROCEEDINGS, 2004, : 132 - 137
  • [35] ANT-Centric IoT Security Reference Architecture-Security-by-Design for Satellite-Enabled Smart Cities
    Lam, Kwok-Yan
    Mitra, Sananda
    Gondesen, Florian
    Yi, Xun
    IEEE INTERNET OF THINGS JOURNAL, 2022, 9 (08) : 5895 - 5908
  • [36] An SDN/NFV-Enabled Enterprise Network Architecture Offering Fine-Grained Security Policy Enforcement
    Lorenz, Claas
    Hock, David
    Scherer, Johann
    Durner, Raphael
    Kellerer, Wolfgang
    Gebert, Steffen
    Gray, Nicholas
    Zinner, Thomas
    Tran-Gia, Phuoc
    IEEE COMMUNICATIONS MAGAZINE, 2017, 55 (03) : 217 - 223
  • [37] Security Viewpoint in a Reference Architecture Model for Cyber-Physical Production Systems
    Ma, Zhendong
    Hudic, Aleksandar
    Shaaban, Abdelkader
    Plosz, Sandor
    2017 2ND IEEE EUROPEAN SYMPOSIUM ON SECURITY AND PRIVACY WORKSHOPS (EUROS&PW), 2017, : 153 - 159
  • [38] A Reference Architecture for Validating Security Across Multi-Cloud Computing Systems
    Edet, Henry
    PROCEEDINGS OF EVALUATION AND ASSESSMENT IN SOFTWARE ENGINEERING (EASE 2021), 2021, : 288 - 293
  • [39] SECURA: Unified Reference Architecture for Advanced Security and Trust in Safety Critical Infrastructures
    Eckel, Michael
    Guergens, Sigrid
    19TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY, AND SECURITY, ARES 2024, 2024,
  • [40] Enterprise Architecture Modeling Based on Cloud Computing Security Ontology as a Reference Model
    Janulevicius, Justinas
    Marozas, Leonardas
    Cenys, Antanas
    Goranin, Nikolaj
    Ramanauskaite, Simona
    2017 OPEN CONFERENCE OF ELECTRICAL, ELECTRONIC AND INFORMATION SCIENCES (ESTREAM), 2017,