Skip to main navigation Skip to search Skip to main content

A Security Evaluation Framework for Software-Defined Network Architectures in Data Center Environments

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

The importance of cloud computing has grown over the last years, which resulted in a significant increase of Data Center (DC) network requirements. Virtualisation is one of the key drivers of that transformation and enables a massive deployment of computing resources, which exhausts server capacity limits. Furthermore, the increased network endpoints need to be handled dynamically and centrally to facilitate cloud computing functionalities. Traditional DCs barely satisfy those demands because of their inherent limitations based on the network topology. Software-Defined Networks (SDN) promise to meet the increasing network require- ments for cloud applications by decoupling control functionalities from data forwarding. Although SDN solutions add more flexibility to DC networks, they also pose new vulnerabilities with a high impact due to the centralised architecture. In this paper we propose an evaluation framework for assessing the security level of SDN architectures in four different stages. Furthermore, we show in an experimental study, how the framework can be used for mapping SDN threats with associated vulnerabilities and necessary mitigations in conjunction with risk and impact classification. The proposed framework helps administrators to evaluate the network security level, to apply countermeasures for identified SDN threats, and to meet the networks security requirements.
Original languageEnglish
Title of host publicationProceedings of the 13th International Conference on Cloud Computing and Services Science, CLOSER 2023
EditorsMaarten van Steen, Claus Pahl
Pages277-288
Number of pages12
ISBN (Electronic)9789897586507
DOIs
Publication statusPrint publication - 28 Apr 2023
Externally publishedYes

Publication series

NameInternational Conference on Cloud Computing and Services Science, CLOSER - Proceedings
Volume2023-April
ISSN (Electronic)2184-5042

Bibliographical note

Publisher Copyright:
Copyright © 2023 by SCITEPRESS – Science and Technology Publications, Lda.

Keywords

  • Data Center Architecture
  • Network Security
  • Security Evaluation Framework
  • Software-Defined Networks

Fingerprint

Dive into the research topics of 'A Security Evaluation Framework for Software-Defined Network Architectures in Data Center Environments'. Together they form a unique fingerprint.

Cite this