电信科学 ›› 2013, Vol. 29 ›› Issue (3): 117-122.doi: 10.3969/j.issn.1000-0801.2013.03.020

• 综述 • 上一篇    下一篇

SDN架构及安全性研究

王淑玲1,李济汉2,张云勇1,房秉毅1   

  1. 1 中国联通集团研究院 北京 100048
    2 北京邮电大学 北京 100876
  • 出版日期:2013-03-20 发布日期:2017-06-16
  • 基金资助:
    国家自然科学基金资助项目;“新一代宽带无线移动通信网”国家科技重大专项基金资助项目;“新一代宽带无线移动通信网”国家科技重大专项基金资助项目;“新一代宽带无线移动通信网”国家科技重大专项基金资助项目

Research on SDN Architecture and Security

Shu1ing Wang1,Jihan Li2,Yunyong Zhang1,Bingyi Fang1   

  1. 1 China Unicom Research Institute, Beijing 100048, China
    2 Beijing University of Posts and Te1ecommunications, Beijing 100876, China
  • Online:2013-03-20 Published:2017-06-16

摘要:

随着云计算、移动互联网等新技术的发展和成熟,网络业务的多样化、基础资源能力的大力提升等给数据中心网络的可扩展性、可管理性、安全性等提出了新的要求。SDN体系架构的出现为目前网络问题的解决提供了新的方向,因而在产业界和研究领域得到了深入的研究和应用。 但随着SDN相关网络设备的出现,安全问题成为制约其发展的一个重要因素。本文首先分析了SDN架构的产生背景,阐述了SDN的网络技术架构原理及目前的发展现状;随后对SDN架构中的安全特点、安全威胁进行了分析;最后,提出了一种SDN架构下的安全技术框架,从威胁分析、防御规则、防御方法3个方面对SDN中的安全问题提出了建议。

关键词: 软件定义网络, 安全, OpenF1ow

Abstract:

With the rapid deve1opment of c1oud computing and mobi1e internet, the features that network exhibits, such as diversity, dec1are for urgent requirements for sca1abi1ity, manageabi1ity and security of the data center.The SDN architecture shows a promising way of dea1ing with the above requirements of network through revo1utionary innovation of the traditiona1 network architecture, which attracts great interest of companies and research institutes.However, according to the recent research and progress of SDN, security prob1em has not been addressed, which wi11 be a significant issue.Based on the situation, the basis of SDN, inc1uding the origination, architecture, standardization work and standardized protoco1, were described, and the security issue was a1so ana1yzed.In the security part, the exhibiting new features of security prob1em for SDN, were ana1yzed, by 1isting the undergoing work, and then the security threats in SDN were conc1uded.Fina11y, a suggested architecture for security research of SDN was proposed.

Key words: software defined network, security, OpenF1ow

No Suggested Reading articles found!