Trust Anchors in Software Defined Networks

Nicolae Paladi, Linus Karlsson, Khalid Elbashir

Forskningsoutput: Kapitel i bok/rapport/Conference proceedingKonferenspaper i proceedingPeer review

265 Nedladdningar (Pure)

Sammanfattning

Advances in software virtualization and network processing lead to increasing network softwarization. Software network elements running on commodity platforms replace or complement hardware components in cloud and mobile network infrastructure. However, such commodity platforms have a large attack surface and often lack granular control and tight integration of the underlying hardware and software stack. Often, software network elements are either themselves vulnerable to software attacks or can be compromised through the bloated trusted computing base. To address this, we protect the core security assets of network elements - authentication credentials and cryptographic context - by provisioning them to and maintaining them exclusively in isolated execution environments. We complement this with a secure and scalable mechanism to enroll network elements into software defined networks. Our evaluation results show a negligible impact on run-time performance and only a moderate performance impact at the deployment stage.
Originalspråkengelska
Titel på värdpublikation23rd European Symposium on Research in Computer Security, ESORICS 2018
FörlagSpringer
Sidor485-505
Antal sidor20
Volym11099
ISBN (elektroniskt)978-3-319-98989-1
ISBN (tryckt)978-3-319-98988-4
DOI
StatusPublished - 2018 aug. 7
EvenemangEuropean Symposium on Research in Computer Security - Barcelona, Spanien
Varaktighet: 2018 sep. 32018 sep. 7
Konferensnummer: 23
https://esorics2018.upc.edu/

Publikationsserier

NamnLecture Notes in Computer Science
FörlagSpringer
Volym11009
ISSN (tryckt)0302-9743
ISSN (elektroniskt)1611-3349

Konferens

KonferensEuropean Symposium on Research in Computer Security
Förkortad titelESORICS
Land/TerritoriumSpanien
OrtBarcelona
Period2018/09/032018/09/07
Internetadress

Ämnesklassifikation (UKÄ)

  • Kommunikationssystem

Fingeravtryck

Utforska forskningsämnen för ”Trust Anchors in Software Defined Networks”. Tillsammans bildar de ett unikt fingeravtryck.

Citera det här