894412
doi
10.1007/978-3-319-61176-1_16
oai:zenodo.org:894412
user-supercloud
user-eu
Zerkane, Salaheddine
IMT Atlantique, BCOM, Lab-STICC
Li, Yanhuang
IMT Atlantique
Espes, David
BCOM, Lab-STICC
Le Parc, Phhilippe
BCOM, Lab-STICC
Cuppens, Frédéric
IMT Atlantique, BCOM
Firewall Policies Provisioning Through SDN in the Cloud
Cuppens, Nora
IMT Atlantique
info:eu-repo/semantics/openAccess
Creative Commons Attribution Non Commercial 4.0 International
https://creativecommons.org/licenses/by-nc/4.0/legalcode
Security policies
Software Defined Networking
Cloud computing
Orchestration
Firewall
OpenFlow
Service providers
ABAC
<p>The evolution of the digital world drives cloud computing to be a key infrastructure for data and services. This breakthrough is transforming Software Defined Networking into the cloud infrastructure backbone because of its advantages such as programmability, abstraction and flexibility. As a result, many cloud providers select SDN as a cloud network service and offer it to their customers. However, due to the rising number of network cloud providers and their security offers, network cloud customers strive to find the best provider candidate who satisfies their security requirements. In this context, we propose a negotiation and an enforcement framework for SDN firewall policies provisioning. Our solution enables customers and SDN providers to express their firewall policies and to negotiate them via an orchestrator. Then, it reinforces these security requirements using the holistic view of the SDN controllers and it deploys the generated firewall rules into the network elements. We evaluate the performance of the solution and demonstrate its advantages.</p>
Zenodo
2017-07-21
info:eu-repo/semantics/conferencePaper
894411
user-supercloud
user-eu
award_title=USER-CENTRIC MANAGEMENT OF SECURITY AND DEPENDABILITY IN CLOUDS OF CLOUDS; award_number=643964; award_identifiers_scheme=url; award_identifiers_identifier=https://cordis.europa.eu/projects/643964; funder_id=00k4n6c32; funder_name=European Commission;
1579542128.468387
570772
md5:04ccf446d18340ee40dc78b586f7e43b
https://zenodo.org/records/894412/files/DBSec-2017.pdf
public