Towards an Efficient Management and Orchestration Framework for Virtual Network Security Functions

Author:

Pedone Ignazio1ORCID,Lioy Antonio1,Valenza Fulvio1ORCID

Affiliation:

1. Politecnico di Torino, Dip. Automatica e Informatica, Torino, Italy

Abstract

The recent years have witnessed a growth in the number of users connected to computer networks, due mainly to megatrends such as Internet of Things (IoT), Industry 4.0, and Smart Grids. Simultaneously, service providers started offering vertical services related to a specific business case (e.g., automotive, banking, and e-health) requiring more and more scalability and flexibility for the infrastructures and their management. NFV and SDN technologies are a clear way forward to address these challenges even though they are still in their early stages. Security plays a central role in this scenario, mainly because it must follow the rapid evolution of computer networks and the growing number of devices. The main issue is to protect the end-user from the increasing threats, and for this reason, we propose in this paper a security framework compliant to the Security-as-a-Service paradigm. In order to implement this framework, we leverage NFV and SDN technologies, using a user-centered approach. This allows to customize the security service starting from user preferences. Another goal of our work is to highlight the main relevant challenges encountered in the design and implementation of our solution. In particular, we demonstrate how significant is to choose an efficient way to configure the Virtual Network Security Functions in terms of performance. Furthermore, we also address the nontrivial problem of Service Function Chaining in an NFV MANO platform and we show what are the main challenges with respect to this problem.

Funder

European Commission

Publisher

Hindawi Limited

Subject

Computer Networks and Communications,Information Systems

Cited by 10 articles. 订阅此论文施引文献 订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献

1. Impact of 5G Technology on Cybersecurity: A Comprehensive Systematic and Bibliometric Review;Computación y Sistemas;2024-06-29

2. Tactical Orchestration : Network, Security, and Drone Intelligence for Mission-Critical Operations;2024 Joint European Conference on Networks and Communications & 6G Summit (EuCNC/6G Summit);2024-06-03

3. Towards Security Automation in Virtual Networks;2023 IEEE 9th International Conference on Network Softwarization (NetSoft);2023-06-19

4. A review on Virtualized Infrastructure Managers with management and orchestration features in NFV architecture;Computer Networks;2022-11

5. Optimizing distributed firewall reconfiguration transients;Computer Networks;2022-10

同舟云学术

1.学者识别学者识别

2.学术分析学术分析

3.人才评估人才评估

"同舟云学术"是以全球学者为主线,采集、加工和组织学术论文而形成的新型学术文献查询和分析系统,可以对全球学者进行文献检索和人才价值评估。用户可以通过关注某些学科领域的顶尖人物而持续追踪该领域的学科进展和研究前沿。经过近期的数据扩容,当前同舟云学术共收录了国内外主流学术期刊6万余种,收集的期刊论文及会议论文总量共计约1.5亿篇,并以每天添加12000余篇中外论文的速度递增。我们也可以为用户提供个性化、定制化的学者数据。欢迎来电咨询!咨询电话:010-8811{复制后删除}0370

www.globalauthorid.com

TOP

Copyright © 2019-2024 北京同舟云网络信息技术有限公司
京公网安备11010802033243号  京ICP备18003416号-3