Firewall Policies Provisioning Through SDN in the Cloud - Data and Applications Security and Privacy XXXI
Conference Papers Year : 2017

Firewall Policies Provisioning Through SDN in the Cloud

Abstract

The evolution of the digital world drives cloud computing to be a key infrastructure for data and services. This breakthrough is transforming Software Defined Networking into the cloud infrastructure backbone because of its advantages such as programmability, abstraction and flexibility. As a result, many cloud providers select SDN as a cloud network service and offer it to their customers. However, due to the rising number of network cloud providers and their security offers, network cloud customers strive to find the best provider candidate who satisfies their security requirements. In this context, we propose a negotiation and an enforcement framework for SDN firewall policies provisioning. Our solution enables customers and SDN providers to express their firewall policies and to negotiate them via an orchestrator. Then, it reinforces these security requirements using the holistic view of the SDN controllers and it deploys the generated firewall rules into the network elements. We evaluate the performance of the solution and demonstrate its advantages.
Fichier principal
Vignette du fichier
453481_1_En_16_Chapter.pdf (363.55 Ko) Télécharger le fichier
Origin Files produced by the author(s)
Loading...

Dates and versions

hal-01684362 , version 1 (15-01-2018)

Licence

Identifiers

Cite

Nora Cuppens, Salaheddine Zerkane, Yanhuang Li, David Espes, Philippe Le Parc, et al.. Firewall Policies Provisioning Through SDN in the Cloud. 31th IFIP Annual Conference on Data and Applications Security and Privacy (DBSEC), Jul 2017, Philadelphia, PA, United States. pp.293-310, ⟨10.1007/978-3-319-61176-1_16⟩. ⟨hal-01684362⟩
231 View
138 Download

Altmetric

Share

More