TruSDN: Bootstrapping Trust in Cloud Network Infrastructure

Forskningsoutput: Kapitel i bok/rapport/Conference proceedingKonferenspaper i proceedingPeer review

Sammanfattning

Software-Defined Networking (SDN) is a novel architectural model for cloud network infrastructure, improving resource utilization, scalability and administration. SDN deployments increasingly rely on virtual switches executing on commodity operating systems with large code bases, which are prime targets for adversaries attacking the network infrastructure. We describe and implement TruSDN , a framework for bootstrapping trust in SDN infrastructure using Intel Software Guard Extensions (SGX), allowing to securely deploy SDN components and protect communication between network endpoints. We introduce ephemeral flow-specific pre-shared keys and propose a novel defense against cuckoo attacks on SGX enclaves. TruSDN is secure under a powerful adversary model, with a minor performance overhead.
Originalspråkengelska
Titel på värdpublikationSecurity and Privacy in Communication Networks
Undertitel på värdpublikation12th International Conference, SecureComm 2016, Guangzhou, China, October 10-12, 2016, Proceedings
FörlagSpringer
Sidor104-124
Antal sidor21
ISBN (elektroniskt)978-3-319-59608-2
ISBN (tryckt)978-3-319-59607-5
DOI
StatusPublished - 2016 okt. 10
Externt publiceradJa
Evenemang12th International Conference, SecureComm 2016 - Guangzhou, Kina
Varaktighet: 2016 okt. 102016 okt. 12

Publikationsserier

NamnLecture Notes of the Institute for Computer Sciences, Social Informatics and Telecommunications Engineering
FörlagSpringer
Volym198
ISSN (tryckt)1867-8211
ISSN (elektroniskt)1867-822X

Konferens

Konferens12th International Conference, SecureComm 2016
Land/TerritoriumKina
OrtGuangzhou
Period2016/10/102016/10/12

Ämnesklassifikation (UKÄ)

  • Kommunikationssystem

Fingeravtryck

Utforska forskningsämnen för ”TruSDN: Bootstrapping Trust in Cloud Network Infrastructure”. Tillsammans bildar de ett unikt fingeravtryck.

Citera det här