Testbed for security orchestration in a network function virtualization environment
Title | Testbed for security orchestration in a network function virtualization environment |
Publication Type | Conference Paper |
Year of Publication | 2017 |
Authors | Kalliola, A., Lal, S., Ahola, K., Oliver, I., Miche, Y., Holtmanns, S. |
Conference Name | 2017 IEEE Conference on Network Function Virtualization and Software Defined Networks (NFV-SDN) |
Date Published | nov |
Keywords | adverse network conditions, artificial intelligence security, cloud computing, Computer crime, computer network security, Conferences, DDoS, Human Behavior, intelligent response, learning (artificial intelligence), machine learning, Metrics, network function virtualization, network function virtualization environment, network quality of service, normal network traffic, orchestrate virtualized network functions, pubcrawl, quality of service, Resiliency, responses, Scalability, security of data, security orchestration, targeted attacks, telecommunication security, telecommunication traffic, testbed implementation, virtual reality, virtualisation |
Abstract | We present a testbed implementation for the development, evaluation and demonstration of security orchestration in a network function virtualization environment. As a specific scenario, we demonstrate how an intelligent response to DDoS and various other kinds of targeted attacks can be formulated such that these attacks and future variations can be mitigated. We utilise machine learning to characterise normal network traffic, attacks and responses, then utilise this information to orchestrate virtualized network functions around affected components to isolate these components and to capture, redirect and filter traffic (e.g. honeypotting) for additional analysis. This allows us to maintain a high level of network quality of service to given network functions and components despite adverse network conditions. |
URL | http://ieeexplore.ieee.org/document/8169857/ |
DOI | 10.1109/NFV-SDN.2017.8169857 |
Citation Key | kalliola_testbed_2017 |
- normal network traffic
- virtualisation
- virtual reality
- testbed implementation
- telecommunication traffic
- telecommunication security
- targeted attacks
- security orchestration
- security of data
- Scalability
- responses
- Resiliency
- quality of service
- pubcrawl
- orchestrate virtualized network functions
- machine learning
- network quality of service
- network function virtualization environment
- network function virtualization
- Metrics
- learning (artificial intelligence)
- intelligent response
- Human behavior
- DDoS
- Conferences
- computer network security
- Computer crime
- Cloud Computing
- artificial intelligence security
- adverse network conditions