Skip to main navigation Skip to search Skip to main content

Analysis of policy-based security management system in software-defined networks

Keshav Sood, Kallol Krishna Karmakar, Vijay Varadharajan, Uday Tupakula, Shui Yu

Research output: Contribution to journalArticlepeer-review

16 Citations (Scopus)

Abstract

In software-defined networks, policy-based security management or architecture (PbSA) is an ideal way to dynamically control the network. We observe that on the one hand, this enables security capabilities intelligently and enhance fine-grained control over end user behavior. But, on the other hand, dynamic variations in network, rapid increases in security attacks, geographical distribution of nodes, complex heterogeneous networks, and so on have serious effects on the performance of PbSAs. These affect the flow specific quality of service requirements with further degradation of the performance of the security context. Hence, in this letter, PbSA's performance is evaluated. The key factors including a number of rules, rule-table size, position of rules, flow arrival rate, and CPU utilization are examined, and found to have considerable impact on the performance of PbSAs.

Original languageEnglish
Pages (from-to)612-615
JournalIEEE Communications Letters
Volume23
Issue number4
Early online date13 Feb 2019
DOIs
Publication statusPublished - 30 Apr 2019

Fingerprint

Dive into the research topics of 'Analysis of policy-based security management system in software-defined networks'. Together they form a unique fingerprint.

Cite this