El-Sec: Elastic Management Of Security Applications On Virtualized Infrastructure

IEEE INFOCOM 2018 - IEEE CONFERENCE ON COMPUTER COMMUNICATIONS WORKSHOPS (INFOCOM WKSHPS)(2018)

引用 23|浏览40
暂无评分
摘要
The concept of Virtualized Network Functions (VNFs) aims to move Network Functions (NFs) out of dedicated hardware devices into software that runs on commodity hardware. A single NF consists of multiple VNF instances, usually running on virtual machines in a cloud infrastructure. The elastic management of an NF refers to load management across the VNF instances and the autonomic scaling of the number of VNF instances as the load on the NF changes. In this paper, we present EL-SEC, an autonomic framework to elastically manage security NFs on a virtualized infrastructure. As a use case, we deploy the Snort Intrusion Detection System as the NF on the GENI testbed. Concepts from control theory are used to create an Elastic Manager, which implements various controllers-in this paper, Proportional Integral (PI) and Proportional Integral Derivative (PID)-to direct traffic across the VNF Snort instances by monitoring the current load. RINA (a clean-slate Recursive InterNetwork Architecture) is used to build a distributed application that monitors load and collects Snort alerts, which are processed by the Elastic Manager and an Attack Analyzer, respectively. Software Defined Networking (SDN) is used to steer traffic through the VNF instances, and to block attack traffic. Our results show that virtualized security NFs can be easily deployed using our EL-SEC framework. With the help of real-time graphs, we show that PI and PID controllers can be used to easily scale the system, which leads to quicker detection of attacks.
更多
查看译文
关键词
virtualized network functions,Snort intrusion detection system,software defined networking,elastic management of security applications,autonomic VNF instances scaling,GENI testbed,control theory,proportional integral derivative controllers,PI controllers,PID controllers,RINA,Recursive InterNetwork Architecture,Attack Analyzer,SDN,EL-SEC framework,virtualized security NFs,VNF Snort instances,Elastic Manager,load management,cloud infrastructure,virtual machines,virtualized infrastructure
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要