首页> 外文会议>IFIP/IEEE Symposium on Integrated Network and Service Management >Automated Distribution of Access Control Rules in Defense Layers of an Enterprise Network
【24h】

Automated Distribution of Access Control Rules in Defense Layers of an Enterprise Network

机译:在企业网络的防御层中自动分配访问控制规则

获取原文

摘要

In this demo paper we present a network management framework for the automated mitigation of multi-vector anomalies. Our approach leverages on Salt to define and distribute system-specific Access Control Rules to network devices and hosts, in a streamlined device-agnostic manner. Network devices are managed using NAPALM, a library offering high-level programmable interfaces via different southbound protocols, e.g. NETCONF, SSH, HTTP. Our Proof-of-Concept testbed incorporates two hardware devices, and two end hosts used accordingly as the attacker and the victim of a multi-vector DDoS attack. As part of the demo, we will generate a DDoS attack and showcase the capabilities offered by the proposed platform towards the attack mitigation.
机译:在此演示文件中,我们提出了一种用于自动缓解多矢量异常的网络管理框架。我们的方法利用Salt简化了设备不可知的方式,将特定于系统的访问控制规则定义并分发到网络设备和主机。网络设备使用NAPALM进行管理,NAPALM是一个通过不同的南向协议(例如, NETCONF,SSH,HTTP。我们的概念验证测试平台包含两个硬件设备,以及两个最终主机,分别用作多向量DDoS攻击的攻击者和受害者。作为演示的一部分,我们将生成DDoS攻击,并展示提议的平台为缓解攻击提供的功能。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号