Vis enkel innførsel

dc.contributor.authorMarku, Enio
dc.contributor.authorBiczok, Gergely
dc.contributor.authorBoyd, Colin Alexander
dc.date.accessioned2022-04-05T08:20:49Z
dc.date.available2022-04-05T08:20:49Z
dc.date.created2022-01-19T20:21:56Z
dc.date.issued2021
dc.identifier.isbn978-1-6654-0522-5
dc.identifier.urihttps://hdl.handle.net/11250/2989816
dc.description.abstractA recent trend is to outsource virtual network functions (VNFs) to a third-party service provider, such as a public cloud. Since the cloud is usually not trusted, redirecting enterprise traffic to such an entity introduces security concerns. In addition to protecting enterprise traffic, it is also desirable to protect VNF code, policies and states. Existing outsourcing solutions fall short in either supporting stateful VNFs, catering for all security requirements, or providing adequate performance.In this paper we present SafeLib, a trusted hardware based outsourcing solution built on Intel SGX. SafeLib provides i) support for stateful VNFs, ii) support for illegal SGX instructions by integrating Graphene-SGX, iii) protection of both packet headers and payload for enterprise user traffic, VNF policies and VNF code, and iv) integration of libVNF for streamlined VNF development. Our performance evaluation shows that SafeLib scales properly for multiple cores, and introduces a reasonable performance overhead. We also outline plans to further improve SafeLib to satisfy even more stringent functional, security and performance requirements.en_US
dc.language.isoengen_US
dc.publisherInstitute of Electrical and Electronics Engineers (IEEE)en_US
dc.relation.ispartof7th IEEE International Conference on Network Softwarization, NetSoft 2021
dc.titleSafeLib: a practical library for outsourcing stateful network functions securelyen_US
dc.typeChapteren_US
dc.description.versionacceptedVersionen_US
dc.rights.holder© IEEE. Personal use of this material is permitted. Permission from IEEE must be obtained for all other uses, in any current or future media, including reprinting/republishing this material for advertising or promotional purposes, creating new collective works, for resale or redistribution to servers or lists, or reuse of any copyrighted component of this work in other works.en_US
dc.source.pagenumber244-252en_US
dc.identifier.doi10.1109/NetSoft51509.2021.9492579
dc.identifier.cristin1985417
cristin.ispublishedtrue
cristin.fulltextpostprint
cristin.qualitycode1


Tilhørende fil(er)

Thumbnail

Denne innførselen finnes i følgende samling(er)

Vis enkel innførsel