首页 | 官方网站   微博 | 高级检索  
     

基于中间盒的SDN信息服务中心策略实施架构
引用本文:李海龙,张钊,董思岐,胡 磊.基于中间盒的SDN信息服务中心策略实施架构[J].计算机应用研究,2020,37(1):254-258.
作者姓名:李海龙  张钊  董思岐  胡 磊
作者单位:火箭军工程大学 保障学院,西安710025;火箭军工程大学 保障学院,西安710025;火箭军工程大学 保障学院,西安710025;火箭军工程大学 保障学院,西安710025
基金项目:国家自然科学基金资助项目
摘    要:中间盒是一种网络管理员手动设置行为策略的设备;软件定义网络(software-defined network,SDN)的出现使得中间盒实施策略的可能性变得多样化。为改善信息服务中心的安全防护,提出一种无须管理员参与即可响应网络事件的基于SDN的动态中间策略实施架构,提出可以满足控制器与中间盒之间通信的接口。在虚拟机中实施了具有防火墙和入侵防御系统(intrusion prevention system,IPS)的中间盒原型来评估策略执行体系,验证原型获得的实验效果。结果表明,该体系结构能够在不影响网络性能的前提下动态执行中间盒策略,使网络应用程序能够正常运行。

关 键 词:中间盒  软件定义网络  策略实施  入侵防御系统
收稿时间:2018/6/10 0:00:00
修稿时间:2018/8/6 0:00:00

Middlebox-based SDN information service center policy implementation framework
Li Hailong,zhangzhao,Dong Siqi and Hu Lei.Middlebox-based SDN information service center policy implementation framework[J].Application Research of Computers,2020,37(1):254-258.
Authors:Li Hailong  zhangzhao  Dong Siqi and Hu Lei
Affiliation:Rocket Force University of Engineering,,,
Abstract:Middlebox is a device that a network administrator manually sets behavior policies. The advent of SDN has made it possible to diversify the possibilities of implementing a middlebox implementation strategy. In order to improve the security of the information service center, this paper proposed an SDN-based dynamic intermediate policy implementation architecture which could respond to network events without administrators'' participation, and proposed an interface which could satisfy the communication between the controller and the middlebox. This paper implemented a middlebox prototype with firewall and IPS in the virtual machine to evaluate the policy execution system and verified the experimental results obtained by the prototype. The results show that the architecture can dynamically execute the middlebox policy without affecting network performance, so that the network application can run normally.
Keywords:middlebox  SDN  policy enforcement  IPS
本文献已被 万方数据 等数据库收录!
点击此处可从《计算机应用研究》浏览原始摘要信息
点击此处可从《计算机应用研究》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司    京ICP备09084417号-23

京公网安备 11010802026262号