Simon Buttgereit, M. Rossberg, M. Pfeiffer, G. Schäfer
{"title":"Demo: Leveraging SDN in Critical Infrastructures","authors":"Simon Buttgereit, M. Rossberg, M. Pfeiffer, G. Schäfer","doi":"10.1109/ICIN51074.2021.9385545","DOIUrl":null,"url":null,"abstract":"Recent developments in computer networks increased flexibility, making them more dynamic and programmable, e.g., by SDN and NFV. However, this also increased complexity and volatility of network components. This is a challenge for highly regulated environments such as critical infrastructure networks where certified components are used to guarantee security requirements of infrastructures, e.g., through mandatory filtering or encryption of network traffic. This demo paper presents a setup where programmable and volatile components are separated from trusted, and thus certified, components. In particular, programmable Network Operating Systems (NOSes) and SDN controllers are deployed to steer the network flows in a VPN overlay. Yet, these flexible components do not have to be included into a certification process.","PeriodicalId":347933,"journal":{"name":"2021 24th Conference on Innovation in Clouds, Internet and Networks and Workshops (ICIN)","volume":"23 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2021-03-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2021 24th Conference on Innovation in Clouds, Internet and Networks and Workshops (ICIN)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICIN51074.2021.9385545","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0
Abstract
Recent developments in computer networks increased flexibility, making them more dynamic and programmable, e.g., by SDN and NFV. However, this also increased complexity and volatility of network components. This is a challenge for highly regulated environments such as critical infrastructure networks where certified components are used to guarantee security requirements of infrastructures, e.g., through mandatory filtering or encryption of network traffic. This demo paper presents a setup where programmable and volatile components are separated from trusted, and thus certified, components. In particular, programmable Network Operating Systems (NOSes) and SDN controllers are deployed to steer the network flows in a VPN overlay. Yet, these flexible components do not have to be included into a certification process.