2017
DOI: 10.1007/978-3-319-59608-2_6
|View full text |Cite
|
Sign up to set email alerts
|

TruSDN: Bootstrapping Trust in Cloud Network Infrastructure

Abstract: Software-Defined Networking (SDN) is a novel architectural model for cloud network infrastructure, improving resource utilization, scalability and administration. SDN deployments increasingly rely on virtual switches executing on commodity operating systems with large code bases, which are prime targets for adversaries attacking the network infrastructure. We describe and implement TruSDN, a framework for bootstrapping trust in SDN infrastructure using Intel Software Guard Extensions (SGX), allowing to securel… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1
1
1
1

Citation Types

0
12
0

Year Published

2017
2017
2021
2021

Publication Types

Select...
3
3
2

Relationship

4
4

Authors

Journals

citations
Cited by 13 publications
(12 citation statements)
references
References 30 publications
0
12
0
Order By: Relevance
“…Furthermore, all the communication between different elements (i.e. REASSIGNER, C-COMPARATOR and S-COMPARATOR) is assumed to be signed [26]. Thus i) message forging is assumed impossible and ii) message integrity is ensured in the data plane during normal operation.…”
Section: Morph System Modelmentioning
confidence: 99%
“…Furthermore, all the communication between different elements (i.e. REASSIGNER, C-COMPARATOR and S-COMPARATOR) is assumed to be signed [26]. Thus i) message forging is assumed impossible and ii) message integrity is ensured in the data plane during normal operation.…”
Section: Morph System Modelmentioning
confidence: 99%
“…Initial work for bootstrapping trust in SDN infrastructures using SGX was done in [18], which presents a framework for isolating network endpoints in SGX enclaves attested and verified before establishing secure communication channels. Shih et al [19] proposed to protect sensitive components of intrusion detection systems using Intel SGX.…”
Section: Related Workmentioning
confidence: 99%
“…However, ensuring and verifying the integrity of VNFs, as well as ensuring the confidentiality of VNF authentication credentials have not been addressed so far. We build upon previous work [7] to provide security guarantees regarding the integrity or VNFs deployed in containers prior to their deployment.…”
Section: Introductionmentioning
confidence: 99%