位置:成果数据库 > 期刊 > 期刊详情页
SDSA: A Framework of a Software-Defined Security Architecture
  • ISSN号:1673-5447
  • 期刊名称:《中国通信:英文版》
  • 时间:0
  • 分类:TP311.52[自动化与计算机技术—计算机软件与理论;自动化与计算机技术—计算机科学与技术] TD7[矿业工程—矿井通风与安全]
  • 作者机构:Chongqing Engineering Laboratory of Network and Information Security, Chongqing University of Posts andTelecommunications, Chongqing 400065, China
  • 相关基金:This work is supported in part by the following grants: National Science Foundation of China (Grant No. 61272400), Chongqing Innovative Team Fund for College Development Project (Grant No. KJTD201310), Chongqing Youth Innovative Talent Project (Grant No. cstc2013kjrc-qnrc40004), Science and Technology Research Program of the Chongqing Municipal Education Committee(Grant No. KJ1500425), WenFeng Foundation of CQUPT (Grant No. WF201403) and Chongqing Graduate Research and Innovation Project (Grant No. CYS14146).
中文摘要:

The fact that the security facilities within a system are closely coupled and the security facilities between systems are unconnected results in an isolated protection structure for systems, and gives rise to a serious challenge to system security integrations and system controls. Also, the need for diversified services and flexible extensions of network security asks for more considerations and contribu?tions from the perspective of software engineering in the process of designing and constructing security systems. Based on the essence of the virtualization technique and the idea of software-defined networks, we in this paper propose a novel software-defi ned security architecture for systems. By abstracting the traditional security facilities and techniques, the proposed security architecture provides a new, simple, effective, and programmable framework in which security operations and security controls can be decoupled, and thereby reduces the software module sizes, decreases the intensity of software deve?lopments, and improves the security extensibility of systems.更多还原

英文摘要:

The fact that the security facilities within a system are closely coupled and the security facilities between systems are unconnected results in an isolated protection structure for systems, and gives rise to a serious challenge to system security integrations and system controls. Also, the need for diversified services and flexible extensions of network security asks for more considerations and contribu-tions from the perspective of software engineering in the process of designing and constructing security systems. Based on the essence of the virtualization technique and the idea of software-defined networks, we in this paper propose a novel software-defined security architecture for systems. By abstracting the traditional security facilities and techniques, the proposed security architecture provides a new, simple, effective, and programmable framework in which security operations and security controls can be decoupled, and thereby reduces the software module sizes, decreases the intensity of software deve-lopments, and improves the security extensibility of systems.

同期刊论文项目
同项目期刊论文
期刊信息
  • 《中国通信:英文版》
  • 中国科技核心期刊
  • 主管单位:中国科学技术协会
  • 主办单位:中国通信学会
  • 主编:刘复利
  • 地址:北京市东城区广渠门内大街80号6层608
  • 邮编:100062
  • 邮箱:editor@ezcom.cn
  • 电话:010-64553845
  • 国际标准刊号:ISSN:1673-5447
  • 国内统一刊号:ISSN:11-5439/TN
  • 邮发代号:2-539
  • 获奖情况:
  • 国内外数据库收录:
  • 被引量:187