...
首页> 外文期刊>International Journal of Network Management >Enhancing IoT security through network softwarization and virtual security appliances
【24h】

Enhancing IoT security through network softwarization and virtual security appliances

机译:通过网络软化和虚拟安全设备增强物联网安全性

获取原文
获取原文并翻译 | 示例
           

摘要

Billions of Internet of Things (IoT) devices are expected to populate our environments and provide novel pervasive services by interconnecting the physical and digital world. However, the increased connectivity of everyday objects can open manifold security vectors for cybercriminals to perform malicious attacks. These threats are even augmented by the resource constraints and heterogeneity of low-cost IoT devices, which make current host-based and static perimeter-oriented defense mechanisms unsuitable for dynamic IoT environments. Accounting for all these considerations, we reckon that the novel softwarization capabilities of Telco network can fully leverage its privileged position to provide the desired levels of security. To this aim, the emerging software-defined networking (SDN) and network function virtualization (NFV) paradigms can introduce new security enablers able to increase the level of IoT systems protection. In this paper, we design a novel policy-based framework aiming to exploit SDN/NFV-based security features, by efficiently coupling with existing IoT security approaches. A proof of concept test bed has been developed to assess the feasibility of the proposed architecture. The presented performance evaluation illustrates the benefits of adopting SDN security mechanisms in integrated IoT environments and provides interesting insights in the policy enforcement process to drive future research.
机译:通过互连物理世界和数字世界,预计将有数十亿个物联网(IoT)设备遍布我们的环境并提供新颖的服务。但是,日常对象的连接性增强可以为网络犯罪分子打开多种安全媒介,以进行恶意攻击。低成本物联网设备的资源限制和异构性甚至加剧了这些威胁,这使得当前基于主机和面向静态外围的防御机制不适合动态物联网环境。考虑到所有这些因素,我们认为电信网络的新型软化功能可以充分利用其特权地位来提供所需的安全级别。为此,新兴的软件定义网络(SDN)和网络功能虚拟化(NFV)范式可以引入新的安全促成因素,从而能够提高IoT系统的保护水平。在本文中,我们设计了一种新颖的基于策略的框架,旨在通过与现有的物联网安全方法有效结合来利用基于SDN / NFV的安全功能。已经开发了概念证明测试台,以评估提出的体系结构的可行性。提出的性能评估说明了在集成物联网环境中采用SDN安全机制的好处,并在策略实施过程中提供了有趣的见解,以推动未来的研究。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号