In this work we present an exploitation of the Software Defined Networking paradigm to implement an architecture allowing a system network administrator to implement and verify in a formal way security policies. The main result is a framework that support the network administrator in the security management process providing services during all this phase, from automated traffic analysis during the prevention phase to tools for the exclusion of malicious traffic from the main flow in the reaction phase. In order to validate the proposed architecture we will showcase an industrial network applied scenario, simulating attacks and countermeasures techniques.

Security network policy enforcement through a SDN framework

Berardi, Davide;
2018-01-01

Abstract

In this work we present an exploitation of the Software Defined Networking paradigm to implement an architecture allowing a system network administrator to implement and verify in a formal way security policies. The main result is a framework that support the network administrator in the security management process providing services during all this phase, from automated traffic analysis during the prevention phase to tools for the exclusion of malicious traffic from the main flow in the reaction phase. In order to validate the proposed architecture we will showcase an industrial network applied scenario, simulating attacks and countermeasures techniques.
2018
978-1-5386-7177-1
Security
Unified modeling language
Tools
Model checking
Switches
Software
Real-time systems computer network security
security of data
software defined networking
telecommunication traffic security network policy enforcement
SDN framework
system network administrator
security management process
automated traffic analysis
prevention phase
malicious traffic
reaction phase
industrial network
software defined networking paradigm
security policies
SDN
security
model checking
policy
File in questo prodotto:
Non ci sono file associati a questo prodotto.

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/20.500.12606/10316
Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus 3
social impact