电信科学 ›› 2013, Vol. 29 ›› Issue (9): 113-116.doi: 10.3969/j.issn.1000-0801.2013.09.022

• 综述 • 上一篇    下一篇

浅析SDN安全需求和安全实现

周苏静   

  1. 中兴通讯股份有限公司 南京 210012
  • 出版日期:2013-09-20 发布日期:2017-06-22

Study on Security in SDN

Sujing Zhou   

  1. ZTE Corporation, Nanjing 210012, China
  • Online:2013-09-20 Published:2017-06-22

摘要:

首先对SDN和网络安全相关的架构(如SANE、Ethane)进行了调研;其次,分析了SDN 的安全需求和安全应用的现状,包括应用层和控制层之间、控制层和转发平面之间的安全需求研究现状以及在SDN上实现安全应用的现状;最后,探讨了SDN应用的认证、授权的解决方案,并对策略冲突消解、网络安全应用实现的现状进行了总结。

关键词: 软件定义网络, 安全, 认证, 授权

Abstract:

Security related SDN architecture was investigated, including SANE、Ethane, etc., then current state on security requirement analysis in SDN was reported, which was separated into two parts, one was between application plane and control plane, and the other was between control plane and data plane. Subsequently, the mechanisms of security applications in SDN were discussed, especially the resolutions on application authentication and authorization using OAuth and ABFAB framework. In the end, a summarize in policy conflict resolution and security implementation were given.

Key words: software defined networking, security, authentication, authorization

No Suggested Reading articles found!