Title
A Framework for Managing User-defined Security Policies to Support Network Security Functions
Abstract
Network Functions Virtualization (NFV) and Software Defined Networking (SDN) make it easier for security administrators to manage security policies on a network system. However, it is still challenging to map high-level security policies defined by users into low-level security policies that can be applied to network security devices. To address this problem, we introduce a framework for effectively managing user-defined security policies for network security functions based on standard interfaces that are currently being standardized in an IETF working group. To show the feasibility of the proposed framework, we implemented a prototype based on the RESTCONF protocol and showed that the proposed framework can be applied in real-world scenarios for network separation, DDoS mitigation and ransomeware prevention.
Year
DOI
Venue
2018
10.1145/3164541.3164569
IMCOM
Keywords
Field
DocType
Security management, Security policy, NSF
Computer science,Network Functions Virtualization,Network security,Computer network,Security policy,DDoS mitigation,Software-defined networking,Security management
Conference
ISBN
Citations 
PageRank 
978-1-4503-6385-3
0
0.34
References 
Authors
8
5
Name
Order
Citations
PageRank
Eunsoo Kim131.18
Kuyju Kim201.01
Seungjin Lee300.34
Jaehoon Jeong438734.96
Hyoungshick Kim501.69