Bootstrapping trust in software defined networks

نویسندگان

  • Nicolae Paladi
  • Christian Gehrmann
چکیده

Software-Defined Networking (SDN) is a novel architectural model for cloud network infrastructure, improving resource utilization, scalability and administration. SDN deployments increasingly rely on virtual switches executing on commodity operating systems with large code bases, which are prime targets for adversaries attacking the network infrastructure. We describe and implement TruSDN, a framework for bootstrapping trust in SDN infrastructure using Intel Software Guard Extensions (SGX), allowing to securely deploy SDN components and protect communication between network endpoints. We introduce ephemeral flow-specific preshared keys and propose a novel defense against cuckoo attacks on SGX enclaves. TruSDN is secure under a powerful adversary model, with a minor performance overhead.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

TruSDN: Bootstrapping Trust in Cloud Network Infrastructure

Software-Defined Networking (SDN) is a novel architectural model for cloud network infrastructure, improving resource utilization, scalability and administration. SDN deployments increasingly rely on virtual switches executing on commodity operating systems with large code bases, which are prime targets for adversaries attacking the network infrastructure. We describe and implement TruSDN, a fr...

متن کامل

Survey the Security Function of Integration of vehicular ad hoc Networks with Software-defiend Networks

In recent years, Vehicular Ad Hoc Networks (VANETs) have emerged as one of the most active areas in the field of technology to provide a wide range of services, including road safety, passenger's safety, amusement facilities for passengers and emergency facilities. Due to the lack of flexibility, complexity and high dynamic network topology, the development and management of current Vehicular A...

متن کامل

Highly reliable trust establishment scheme in ad hoc networks

Securing ad hoc networks in a fully self-organized way is effective and light-weight, but fails to accomplish trust initialization in many trust deficient scenarios. To overcome this problem, this paper aims at building well established trust relationships in ad hoc networks without relying on any pre-defined assumption. We propose a probabilistic solution based on distributed trust model. A se...

متن کامل

Deploying Software-Defined Networks: a Telco Perspective

OF MASTER’S THESIS Author: Rajat Kandoi Title: Deploying Software-Defined Networks: a Telco Perspective Date: July 15, 2015 Pages: 77 Professorship: Data Communication Software Code: T-110 Supervisors: Professor Tuomas Aura Professor Markus Hidell Advisors: Markku Antikainen M.Sc. (Tech.) Sumanta Saha M.Sc. (Tech.) Software-Defined Networking (SDN) proposes a new network architecture in which t...

متن کامل

A Review of the Role of Trust, Social Networks, Participation and the Feeling of Happiness in Students

The purpose of this research is to review the relationship between trust, social networks, participation and feeling of happiness. The statistical population of the present research, all of the students of Islamic Azad University of Kerman Branch (a number of 16403 students) in the academic year of 2013-14, among which a number of 400 students have been selected as the sample size, the question...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:
  • ICST Trans. Security Safety

دوره 4  شماره 

صفحات  -

تاریخ انتشار 2017