دورية أكاديمية

P4sec: Automated Deployment of 802.1X, IPsec, and MACsec Network Protection in P4-Based SDN

التفاصيل البيبلوغرافية
العنوان: P4sec: Automated Deployment of 802.1X, IPsec, and MACsec Network Protection in P4-Based SDN
المؤلفون: Frederik Hauser, Marco Haberle, Michael Menth
المصدر: IEEE Access, Vol 11, Pp 56300-56309 (2023)
بيانات النشر: IEEE, 2023.
سنة النشر: 2023
المجموعة: LCC:Electrical engineering. Electronics. Nuclear engineering
مصطلحات موضوعية: P4, data plane programming, software-defined networking, network security, Electrical engineering. Electronics. Nuclear engineering, TK1-9971
الوصف: 802.1X, MACsec, and IPsec are widespread network security mechanisms that control network access and add encryption and authentication to L2 and L3 networking. They are standardized by IEEE and IETF, and are part of most open-source and commercial network hardware and software appliances. However, lots of manual configuration is needed for their application in traditional networks. In this work, we present P4sec, a three-tier control architecture for automated configuration of these security protocols in networks with multiple sites. P4sec leverages P4-programmable switches and operates them through distributed controllers. We briefly introduce data plane programming with P4 and give an overview of 802.1X, MACsec, and IPsec. We explain the three-tier control architecture P4sec and validate it by a prototype which is published under the Apache v2 license on GitHub. Finally, we discuss opportunities and challenges.
نوع الوثيقة: article
وصف الملف: electronic resource
اللغة: English
تدمد: 2169-3536
Relation: https://ieeexplore.ieee.org/document/10144756/; https://doaj.org/toc/2169-3536
DOI: 10.1109/ACCESS.2023.3283428
URL الوصول: https://doaj.org/article/ddc9a923cebd4189b8063d2a97d0bde7
رقم الأكسشن: edsdoj.9a923cebd4189b8063d2a97d0bde7
قاعدة البيانات: Directory of Open Access Journals
الوصف
تدمد:21693536
DOI:10.1109/ACCESS.2023.3283428