A Secure Multi-Tenant Framework for SDN - Archive ouverte HAL Accéder directement au contenu
Communication Dans Un Congrès Année : 2016

A Secure Multi-Tenant Framework for SDN

Résumé

Software-Defined Networking (SDN) promises a flexible and programmable solution for future networks. By extracting the control logic out of forwarding devices into a specific entity as the control plane, it dramatically eases the management work of multi-tenant networks, where several customers share same network resources. Depending on the way and the SDN layer that tenants can interact with, they can be allowed to have higher and differentiated levels of control over their own slices of available resources. This paper discusses multi-tenancy in SDN by proposing a framework on SDN northbound that focuses as a matter of priority on isolation and access control. A new network abstraction layer is introduced between the control layer and application layer on top of which tenants are provided unified APIs with abstract views and pre-defined levels of control over their dedicated virtual networks, with no concerning about the underlying type and number of controllers as well as topology of physical networks. A developed PoC finally shows the soundness of our approach by implementing various levels of isolation together with AAA functions.
Fichier non déposé

Dates et versions

hal-01393899 , version 1 (08-11-2016)

Identifiants

Citer

Hao Jiang, Ahmed Bouabdallah, Amin Aflatoonian, Jean-Marie Bonnin, Karine Guillouard. A Secure Multi-Tenant Framework for SDN. SIN 2016 : 9th International Conference on Security of Information and Networks, Jul 2016, New Jersey, United States. pp.40 - 44, ⟨10.1145/2947626.2947641⟩. ⟨hal-01393899⟩
191 Consultations
0 Téléchargements

Altmetric

Partager

Gmail Facebook X LinkedIn More