DC Field | Value | Language |
---|---|---|
dc.contributor.author | Porras, Phillip | - |
dc.contributor.author | Shin, Seung Won | - |
dc.contributor.author | Yegneswaran, Vinod | - |
dc.contributor.author | Fong, Martin | - |
dc.contributor.author | Tyson, Mabry | - |
dc.contributor.author | Gu, Guofei | - |
dc.date.accessioned | 2016-04-22T08:19:00Z | - |
dc.date.available | 2016-04-22T08:19:00Z | - |
dc.date.created | 2015-12-30 | - |
dc.date.issued | 2012-08-13 | - |
dc.identifier.citation | Proceedings of the first workshop on Hot topics in software defined networks(HotSDN), pp.121 - 126 | - |
dc.identifier.isbn | 978-1-4503-1477-0 | - |
dc.identifier.uri | http://hdl.handle.net/10203/205917 | - |
dc.description.abstract | Software-defined networks facilitate rapid and open innovation at the network control layer by providing a programmable network infrastructure for computing flow policies on demand. However, the dynamism of programmable networks also introduces new security challenges that demand innovative solutions. A critical challenge is efficient detection and reconciliation of potentially conflicting flow rules imposed by dynamic OpenFlow (OF) applications. To that end, we introduce FortNOX, a software extension that provides role-based authorization and security constraint enforcement for the NOX OpenFlow controller. FortNOX enables NOX to check flow rule contradictions in real time, and implements a novel analysis algorithm that is robust even in cases where an adversarial OF application attempts to strategically insert flow rules that would otherwise circumvent flow rules imposed by OF security applications. We demonstrate the utility of FortNOX through a prototype implementation and use it to examine performance and efficiency aspects of the proposed framework. | - |
dc.language | English | - |
dc.publisher | ACM Sigcomm | - |
dc.title | A security enforcement kernel for OpenFlow networks | - |
dc.type | Conference | - |
dc.type.rims | CONF | - |
dc.citation.beginningpage | 121 | - |
dc.citation.endingpage | 126 | - |
dc.citation.publicationname | Proceedings of the first workshop on Hot topics in software defined networks(HotSDN) | - |
dc.identifier.conferencecountry | FI | - |
dc.identifier.conferencelocation | Finland | - |
dc.contributor.localauthor | Shin, Seung Won | - |
dc.contributor.nonIdAuthor | Porras, Phillip | - |
dc.contributor.nonIdAuthor | Yegneswaran, Vinod | - |
dc.contributor.nonIdAuthor | Fong, Martin | - |
dc.contributor.nonIdAuthor | Tyson, Mabry | - |
dc.contributor.nonIdAuthor | Gu, Guofei | - |
Items in DSpace are protected by copyright, with all rights reserved, unless otherwise indicated.