首页> 美国卫生研究院文献>Sensors (Basel Switzerland) >Semantic-Aware Security Orchestration in SDN/NFV-Enabled IoT Systems
【2h】

Semantic-Aware Security Orchestration in SDN/NFV-Enabled IoT Systems

机译:启用S​​DN / NFV的IOT系统中的语义感知安全编程

代理获取
本网站仅为用户提供外文OA文献查询和代理获取服务,本网站没有原文。下单后我们将采用程序或人工为您竭诚获取高质量的原文,但由于OA文献来源多样且变更频繁,仍可能出现获取不到、文献不完整或与标题不符等情况,如果获取不到我们将提供退款服务。请知悉。

摘要

IoT systems can be leveraged by Network Function Virtualization (NFV) and Software-Defined Networking (SDN) technologies, thereby strengthening their overall flexibility, security and resilience. In this sense, adaptive and policy-based security frameworks for SDN/NFV-aware IoT systems can provide a remarkable added value for self-protection and self-healing, by orchestrating and enforcing dynamically security policies and associated Virtual Network Functions (VNF) or Virtual network Security Functions (VSF) according to the actual context. However, this security orchestration is subject to multiple possible inconsistencies between the policies to enforce, the already enforced management policies and the evolving status of the managed IoT system. In this regard, this paper presents a semantic-aware, zero-touch and policy-driven security orchestration framework for autonomic and conflict-less security orchestration in SDN/NFV-aware IoT scenarios while ensuring optimal allocation and Service Function Chaining (SFC) of VSF. The framework relies on Semantic technologies and considers the security policies and the evolving IoT system model to dynamically and formally detect any semantic conflict during the orchestration. In addition, our optimized SFC algorithm maximizes the QoS, security aspects and resources usage during VSF allocation. The orchestration security framework has been implemented and validated showing its feasibility and performance to detect the conflicts and optimally enforce the VSFs.
机译:可以通过网络功能虚拟化(NFV)和软件定义的网络(SDN)技术来利用IoT系统,从而强化其整体灵活性,安全性和弹性。从这个意义上讲,SDN / NFV-Aware IoT系统的自适应和基于策略的安全框架可以通过协调和执行动态安全策略和相关的虚拟网络功能(VNF)或提供了一种非常额外的自我保护和自我修复值。虚拟网络安全功能(VSF)根据实际上下文。但是,此安全编程受到强制执行策略之间的多个可能不一致的,该策略与受管IOT系统的不断发展状态。在这方面,本文介绍了SDN / NFV感知IOT方案中的语义感知,零触控和策略驱动的安全编程框架,用于确保最佳分配和服务功能链接(SFC) VSF。该框架依赖于语义技术,并考虑安全策略和不断发展的物联网系统模型,以动态地,在编排过程中正式检测任何语义冲突。此外,我们的优化SFC算法在VSF分配期间最大化了QoS,安全方面和资源使用。已经实现和验证了编排安全框架,显示其可行性和性能来检测冲突,并最佳地强制执行VSF。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
代理获取

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号