Journal on Communications ›› 2020, Vol. 41 ›› Issue (4): 102-113.doi: 10.11959/j.issn.1000-436x.2020063

• Papers • Previous Articles     Next Articles

Dynamic migration method of key virtual network function based on risk awareness

Shaohu DING,Jichao XIE(),Peng ZHANG,Liming PU,Yunjie GU   

  1. Institute of Information Technology,Information Engineering University,Zhengzhou 450002,China
  • Revised:2020-03-03 Online:2020-04-25 Published:2020-04-30
  • Supported by:
    The National Natural Science Foundation of China(61802429);The National Natural Science Foundation of China(61872382);The National Natural Science Foundation of China(61521003);The National Key Research and Development Program of China(2017YFB0803201);The National Key Research and Development Program of China(2017YFB0803204)

Abstract:

Aiming at the problems that traditional dynamic migration methods have many migration nodes,high migration frequency,and long service function chain (SFC) link path after migration when dealing with side channel attack,a dynamic migration method of critical virtual network function (VNF) based on risk awareness was proposed.In order to reduce the number of migrated nodes,only the key VNF with private information was migrated.Combined with the side channel attack detection system,the triggering migration was performed on the critical VNF which were under attack,and the key VNF was also periodically migrated according to the side channel information leakage model.Finally,a multi-attribute node sorting method base on the technique for order preference by similarity to ideal solution was used to select the migration destination server to avoid the path being too long after migration.Experiments show that the proposed method has a lower number of migration nodes and migration frequency when achieving the same side channel attack defense performance,and effectively avoids the problem that the SFC path is too long after migration.

Key words: service function chain, virtual network function, side-channel attack, dynamic migration, multi-attribute node sorting

CLC Number: 

No Suggested Reading articles found!