SDSA: A Framework of a Software-Defined Security Architecture

被引:0
|
作者
Liu Yanbing [1 ]
Lu Xingyu [1 ]
Jian Yi [1 ]
Xiao Yunpeng [1 ]
机构
[1] Chongqing Univ Posts & Telecommun, Chongqing Engn Lab Network & Informat Secur, Chongqing 400065, Peoples R China
基金
美国国家科学基金会;
关键词
information security; network security; security architecture; software-defined security; WIRELESS; VIRTUALIZATION; PROTOCOL;
D O I
暂无
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
The fact that the security facilities within a system are closely coupled and the security facilities between systems are unconnected results in an isolated protection structure for systems, and gives rise to a serious challenge to system security integrations and system controls. Also, the need for diversified services and flexible extensions of network security asks for more considerations and contributions from the perspective of software engineering in the process of designing and constructing security systems. Based on the essence of the virtualization technique and the idea of software-defined networks, we in this paper propose a novel software-defined security architecture for systems. By abstracting the traditional security facilities and techniques, the proposed security architecture provides a new, simple, effective, and programmable framework in which security operations and security controls can be decoupled, and thereby reduces the software module sizes, decreases the intensity of software developments, and improves the security extensibility of systems.
引用
收藏
页码:178 / 188
页数:11
相关论文
共 50 条
  • [31] A Software-Defined Security Framework for Power IoT Cloud-Edge Environment
    Qiu, Rixuan
    Fu, Yu
    Le, Jian
    Zheng, Fuyong
    Qi, Gan
    Peng, Chao
    Li, Yuancheng
    [J]. International Journal of Network Security, 2022, 24 (06) : 1031 - 1041
  • [32] Programmable Security in the Age of Software-Defined Infrastructure
    Gu, Guofei
    [J]. PROCEEDINGS OF THE 2021 CLOUD COMPUTING SECURITY WORKSHOP, CCSW 2021, 2021, : 1 - 1
  • [33] Security Challenges and Opportunities of Software-Defined Networking
    Dacier, Marc C.
    Koenig, Hartmut
    Cwalinski, Radoslaw
    Kargl, Frank
    Dietrich, Sven
    [J]. IEEE SECURITY & PRIVACY, 2017, 15 (02) : 96 - 100
  • [34] SOFTWARE-DEFINED NETWORKING SECURITY: PROS AND CONS
    Dabbagh, Mehiar
    Hamdaoui, Bechir
    Guizani, Mohsen
    Rayes, Ammar
    [J]. IEEE COMMUNICATIONS MAGAZINE, 2015, 53 : 73 - 79
  • [35] Security in Software-Defined Networking: Threats and Countermeasures
    Zhaogang Shu
    Jiafu Wan
    Di Li
    Jiaxiang Lin
    Athanasios V. Vasilakos
    Muhammad Imran
    [J]. Mobile Networks and Applications, 2016, 21 : 764 - 776
  • [36] Improving the Routing Security in Software-Defined Networks
    Ai, Jianjian
    Guo, Zehua
    Chen, Hongchang
    Cheng, Guozhen
    [J]. IEEE COMMUNICATIONS LETTERS, 2019, 23 (05) : 838 - 841
  • [37] Semantic Security Tools in Software-Defined Networks
    Antoshina, E. Ju.
    Chalyy, D. Ju.
    [J]. AUTOMATIC CONTROL AND COMPUTER SCIENCES, 2018, 52 (07) : 605 - 607
  • [38] Security in Software-Defined Networking: Threats and Countermeasures
    Shu, Zhaogang
    Wan, Jiafu
    Li, Di
    Lin, Jiaxiang
    Vasilakos, Athanasios V.
    Imran, Muhammad
    [J]. MOBILE NETWORKS & APPLICATIONS, 2016, 21 (05): : 764 - 776
  • [39] Security and design requirements for software-defined VANETs
    Ben Jaballah, Wafa
    Conti, Mauro
    Lal, Chhagan
    [J]. COMPUTER NETWORKS, 2020, 169 (169)
  • [40] KalKi: A Software-Defined IoT Security Platform
    Echeverria, Sebastian
    Lewis, Grace
    Mazzotta, Craig
    Grabowski, Christopher
    O'Meara, Kyle
    Vasudevan, Amit
    Novakouski, Marc
    McCormack, Matthew
    Sekar, Vyas
    [J]. 2020 IEEE 6TH WORLD FORUM ON INTERNET OF THINGS (WF-IOT), 2020,