Login| Sign Up| Help| Contact|

Patent Searching and Data


Title:
STRUCTURE FOR MANAGING SECURITY IN NETWORK VIRTUALIZATION ENVIRONMENT
Document Type and Number:
WIPO Patent Application WO/2018/101565
Kind Code:
A1
Abstract:
Disclosed is a structure for an interface to network security functions (I2NSF) user to effectively manage security of a network security function (NSF) in an I2NSF framework associated with providing a network virtualization-based NSF. By means of the suggested structure, an I2NSF user directly establishes user-based high-level security policies, and a security controller translates such user-based high-level security policies into NSF-based low-level security policies that an NSF can understand. The security controller is configured so that same can execute the corresponding security service by transmitting such low-level security policies to the NSF by means of NETCONF. The I2NSF user receives feedback of events generated in the NSF, and as a result, can manage security effectively. The present invention describes the functions executed by the elements which are added for the I2NSF user to manage security in the I2NSF framework.

Inventors:
JEONG JAEHOON (KR)
KIM HYOUNGSHICK (KR)
OH SANGHAK (KR)
KIM EUNSOO (KR)
Application Number:
PCT/KR2017/007108
Publication Date:
June 07, 2018
Filing Date:
July 04, 2017
Export Citation:
Click for automatic bibliography generation   Help
Assignee:
RESEARCH&BUSINESS FOUNDATION SUNGKYUNKWAN UNIV (KR)
International Classes:
H04L29/06
Foreign References:
US20120159632A12012-06-21
Other References:
J. JEONG: "I2NSF Data Model of Consumer-Facing Interface for Security Management draft-jeong-i2nsf-consumer-facing-interface-dm-00", DRAFT-JEONG-I2NSF-CONSUMER-FACING-INTERFACE-DM-00, NETWORK WORKING GROUP , INTERNET -DRAFT, 13 November 2016 (2016-11-13), XP055607009, Retrieved from the Internet
R. KUMAR: "Requirements for Client-Facing Interface to Security Controller. draft-ietf-i2nsf-client-facing-interface-req-00", DRAFT-IETF-I2NSF-CLIENT-FACING-INTERFACE-REQ-00, I2NSF WORKING GROUP , INTERNET -DRAFT, 28 October 2016 (2016-10-28), XP055607013, Retrieved from the Internet
S. HYUN ET AL: "NSF-triggered Traffic Steering in I2NSF Framework; draft-hyun-i2nsf-nsf-triggered-steering-01.txt", DRAFT-HYUN- I2NSF-NSF-TRIGGERED-STEERING-01, NETWORK WORKING GROUP , INTERNET -DRAFT, 13 November 2016 (2016-11-13), XP015116617, Retrieved from the Internet
H. KIM ET AL: "An Architecture for Security Management in I2NSF Framework draft-kim-i2nsf-security-management-architecture-00", DRAFT-KIM-I2NSF-SECURITY-MANAGEMENT-ARCHITECTURE-00, 4 July 2016 (2016-07-04), XP055607018, Retrieved from the Internet
H. KIM: "An Architecture for Security Management in I2NSF Framework draft-kim-i2nsf-security-management-architecture-03.txt", DRAFT-KIM-I2NSF-SECURITY-MANAGEMENT-ARCHITECTURE-03,, 31 October 2016 (2016-10-31), XP015116427, Retrieved from the Internet
SANGHAK OH: "A Flexible Architecture for Orchestrating Network Security Functions to Support High-level Security Policies", IMCOM, 7 January 2017 (2017-01-07), Retrieved from the Internet
Attorney, Agent or Firm:
ROYAL PATENT & LAW OFFICE (KR)
Download PDF: