Published July 21, 2017 | Version v1
Conference paper Open

Firewall Policies Provisioning Through SDN in the Cloud

  • 1. IMT Atlantique
  • 2. IMT Atlantique, BCOM, Lab-STICC
  • 3. BCOM, Lab-STICC
  • 4. IMT Atlantique, BCOM

Description

The evolution of the digital world drives cloud computing to be a key infrastructure for data and services. This breakthrough is transforming Software Defined Networking into the cloud infrastructure backbone because of its advantages such as programmability, abstraction and flexibility. As a result, many cloud providers select SDN as a cloud network service and offer it to their customers. However, due to the rising number of network cloud providers and their security offers, network cloud customers strive to find the best provider candidate who satisfies their security requirements. In this context, we propose a negotiation and an enforcement framework for SDN firewall policies provisioning. Our solution enables customers and SDN providers to express their firewall policies and to negotiate them via an orchestrator. Then, it reinforces these security requirements using the holistic view of the SDN controllers and it deploys the generated firewall rules into the network elements. We evaluate the performance of the solution and demonstrate its advantages.

Files

DBSec-2017.pdf

Files (570.8 kB)

Name Size Download all
md5:04ccf446d18340ee40dc78b586f7e43b
570.8 kB Preview Download

Additional details

Funding

SUPERCLOUD – USER-CENTRIC MANAGEMENT OF SECURITY AND DEPENDABILITY IN CLOUDS OF CLOUDS 643964
European Commission