Home > Research > Publications & Outputs > 4MIDable: Flexible Network Offloading For Secur...

Links

Text available via DOI:

Keywords

View graph of relations

4MIDable: Flexible Network Offloading For Security VNFs

Research output: Contribution to Journal/MagazineJournal articlepeer-review

Published

Standard

4MIDable: Flexible Network Offloading For Security VNFs. / Lewis, Benjamin; Broadbent, Matthew; Rotsos, Charalampos et al.
In: Journal of Network and Systems Management, Vol. 31, No. 3, 52, 31.07.2023.

Research output: Contribution to Journal/MagazineJournal articlepeer-review

Harvard

APA

Vancouver

Lewis B, Broadbent M, Rotsos C, Race N. 4MIDable: Flexible Network Offloading For Security VNFs. Journal of Network and Systems Management. 2023 Jul 31;31(3):52. Epub 2023 Jun 15. doi: 10.1007/s10922-023-09744-1

Author

Lewis, Benjamin ; Broadbent, Matthew ; Rotsos, Charalampos et al. / 4MIDable: Flexible Network Offloading For Security VNFs. In: Journal of Network and Systems Management. 2023 ; Vol. 31, No. 3.

Bibtex

@article{d2b34cf459d94c41a602afd975221dd7,
title = "4MIDable: Flexible Network Offloading For Security VNFs",
abstract = "The ever-growing volume of network traffic and widening adoption of Internet protocols to underpin common communication processes augments the importance of network security. In order to enforce network security policies, network managers adopt a widening set of middleboxes and network appliances to improve traffic monitoring and processing capabilities. The resource requirements to support network security appliances are constantly increasing, making efficiency of these systems an essential aspect. The move toward Software-Defined Networking and programmable data planes offers a mean to offload traffic processing functionalities to within the network itself. To this end, we present the 4MIDable framework: a platform that facilitates the integration of existing middleboxes and monitoring appliances with an SDN (P4) network infrastructure. We also present P4Protect, a 4MIDable agent that protects the network from control plane DoS attacks with negligible impact on control plane latency, and P4ID (P4-Enhanced Intrusion Detection), a 4MIDable agent that offers stateful processing and feedback to unmodified Intrusion Detection System middleboxes and reduces traffic processing by over 80% without affecting threat detection rates.",
keywords = "P4, IDS, VNF, SDN",
author = "Benjamin Lewis and Matthew Broadbent and Charalampos Rotsos and Nicholas Race",
year = "2023",
month = jul,
day = "31",
doi = "10.1007/s10922-023-09744-1",
language = "English",
volume = "31",
journal = "Journal of Network and Systems Management",
issn = "1064-7570",
publisher = "Springer New York",
number = "3",

}

RIS

TY - JOUR

T1 - 4MIDable: Flexible Network Offloading For Security VNFs

AU - Lewis, Benjamin

AU - Broadbent, Matthew

AU - Rotsos, Charalampos

AU - Race, Nicholas

PY - 2023/7/31

Y1 - 2023/7/31

N2 - The ever-growing volume of network traffic and widening adoption of Internet protocols to underpin common communication processes augments the importance of network security. In order to enforce network security policies, network managers adopt a widening set of middleboxes and network appliances to improve traffic monitoring and processing capabilities. The resource requirements to support network security appliances are constantly increasing, making efficiency of these systems an essential aspect. The move toward Software-Defined Networking and programmable data planes offers a mean to offload traffic processing functionalities to within the network itself. To this end, we present the 4MIDable framework: a platform that facilitates the integration of existing middleboxes and monitoring appliances with an SDN (P4) network infrastructure. We also present P4Protect, a 4MIDable agent that protects the network from control plane DoS attacks with negligible impact on control plane latency, and P4ID (P4-Enhanced Intrusion Detection), a 4MIDable agent that offers stateful processing and feedback to unmodified Intrusion Detection System middleboxes and reduces traffic processing by over 80% without affecting threat detection rates.

AB - The ever-growing volume of network traffic and widening adoption of Internet protocols to underpin common communication processes augments the importance of network security. In order to enforce network security policies, network managers adopt a widening set of middleboxes and network appliances to improve traffic monitoring and processing capabilities. The resource requirements to support network security appliances are constantly increasing, making efficiency of these systems an essential aspect. The move toward Software-Defined Networking and programmable data planes offers a mean to offload traffic processing functionalities to within the network itself. To this end, we present the 4MIDable framework: a platform that facilitates the integration of existing middleboxes and monitoring appliances with an SDN (P4) network infrastructure. We also present P4Protect, a 4MIDable agent that protects the network from control plane DoS attacks with negligible impact on control plane latency, and P4ID (P4-Enhanced Intrusion Detection), a 4MIDable agent that offers stateful processing and feedback to unmodified Intrusion Detection System middleboxes and reduces traffic processing by over 80% without affecting threat detection rates.

KW - P4

KW - IDS

KW - VNF

KW - SDN

U2 - 10.1007/s10922-023-09744-1

DO - 10.1007/s10922-023-09744-1

M3 - Journal article

VL - 31

JO - Journal of Network and Systems Management

JF - Journal of Network and Systems Management

SN - 1064-7570

IS - 3

M1 - 52

ER -