Published November 6, 2017 | Version v1
Conference paper Open

NFV-based network protection: the SHIELD approach

  • 1. Politecnico di Torino Torino (Italy)
  • 2. Space Hellas Athens (Greece)
  • 3. Fundaci´o I2CAT Barcelona (Spain)
  • 4. Hewlett Packard Labs Bristol (United Kingdom)
  • 5. National Center for Scientific Research Demokritos Athens (Greece)
  • 6. Orion Innovations PC Athens (Greece)

Description

This demo showcases some of the capabilities foreseen for the security infrastructure designed by the H2020 SHIELD project. SHIELD exploits NFV for adaptive monitoring of an IT infrastructure and for feeding the data to an analytics engine to detect attacks in real time. An intelligent reaction system is then activated to reconfigure the SDN/NFV infrastructure so that the attacks are thwarted. The SDN/NFV infrastructure itself is protected from attacks thanks to trusted computing techniques, that permit to quickly identify misbehaving nodes. The proposed demo will present detection and reaction to a DDoS attack (by on-the-fly deployment of new virtual network security functions and/or change of network paths), as well as detection of software attacks against virtual network functions (executed in Docker containers) and unauthorized modification of the SDN switching tables and NFV configurations.

Files

nfvsdn2017-demo-paper.pdf

Files (192.0 kB)

Name Size Download all
md5:d4c5c0c48ede75d42d39deceddf1d5d5
192.0 kB Preview Download

Additional details

Funding

SHIELD – Securing against intruders and other threats through a NFV-enabled environment 700199
European Commission