Journal on Communications ›› 2015, Vol. 36 ›› Issue (Z1): 188-196.doi: 10.11959/j.issn.1000-436x.2015299

• Academic paper • Previous Articles     Next Articles

SDFAC:software defined flow access control mechanism

Xiu-lei WANG,Guo-min ZHANG,Chao HU,Ming CHEN,Xiang-lin WEI   

  1. College of Command Information System,PLA University of Science and Technology,Nanjing 210007,China
  • Online:2015-11-25 Published:2015-12-29
  • Supported by:
    The National Basic Research Program of China(973 Program);The National Natural Science Foundation of China;The National Natural Science Foundation of China;The Natural Science Foundation of Jiangsu Province;The Natural Science Foundation of Jiangsu Province;Jiangsu Future Network Innovation Institute Research Project on Future Networks

Abstract:

The software defined networking paradigm decouples control plane from data plane,offering flexible centralized control and fine grain flow management.Based on these advantages,a novel software defined access control mechanism SDFAC was proposed.Firstly,an analysis of the access control model was given from the flow granularity,and the precondition for the fine-grained access control was deduced from the model.Secondly,the framework and basic working process of the SDFAC was described.The flow authentication protocol was designed to support the function of SDFAC.Finally,the experiment results prove the feasibility and availability of SDFAC.

Key words: access control mechanism, software defined networking, flow authentication protocol, OpenFlow, security

No Suggested Reading articles found!