...
首页> 外文期刊>Journal of Cyber Security and Mobility >Challenges of Network Forensic Investigation in Virtual Networks
【24h】

Challenges of Network Forensic Investigation in Virtual Networks

机译:虚拟网络中网络取证调查的挑战

获取原文
           

摘要

The evolution of virtualization techniques is changing operating principles in today’s datacenters. Virtualization of servers, networks and storage increases the flexibility and dynamic of the environment by reducing the administrative overhead. Based on a physical underlay network, different logical networks are implemented with new protocols like VXLAN, STT or GENEVE. New paradigms like Software-Defined-Networks or Network Function Virtualiza-tion offer new capabilities to redesign the whole network infrastructure. This trend creates new challenges for digital investigations analysing incidents by extracting and interpreting recorded data inside the environment. As a branch of digital investigation, network forensic investigation is used to examine network traffic by capturing the data of a suspicious target system and analysing this data. In this article, we analyse in detail new challenges in investigating virtual networks. We propose a classification in three categories, which might help to develop new methods and possible solutions to simplify further necessary investigations in virtual network environments. The defined challenges are classified according their potential to impede the investigation. Based on this classification we derive a list of basic conditions, describing different necessary requirements to implement a successful, valid and ongoing network forensic investigation in these virtual networks.
机译:虚拟化技术的发展正在改变当今数据中心的操作原理。服务器,网络和存储的虚拟化通过减少管理开销来增加环境的灵活性和动态性。基于物理底层网络,可以使用新协议(例如VXLAN,STT或GENEVE)实现不同的逻辑网络。软件定义网络或网络功能虚拟化等新范例提供了重新设计整个网络基础架构的新功能。通过提取和解释环境中记录的数据,这种趋势给数字调查分析事件带来了新的挑战。作为数字调查的一个分支,网络取证调查用于通过捕获可疑目标系统的数据并分析此数据来检查网络流量。在本文中,我们详细分析了调查虚拟网络方面的新挑战。我们提出了三类分类,这可能有助于开发新方法和可能的解决方案,以简化虚拟网络环境中的进一步必要调查。已定义的挑战会根据其阻碍调查的潜力进行分类。基于此分类,我们得出了一系列基本条件,描述了在这些虚拟网络中实施成功,有效和正在进行的网络取证调查的不同必要要求。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号