Communication publiée dans un ouvrage (Colloques, congrès, conférences scientifiques et actes)
Intent-Based Attack Mitigation through Opportunistic Synchronization of Micro-Services
Nguyen, Do Duc Anh; Alain, Pierre; Autrel, Fabien et al.
2024In 2024 IEEE 10th International Conference on Network Softwarization, NetSoft 2024
Peer reviewed
 

Documents


Texte intégral
PhD_Symposium_NetSoft_2024.pdf
Postprint Auteur (592.52 kB) Licence Creative Commons - Attribution
Télécharger

Tous les documents dans ORBilu sont protégés par une licence d'utilisation.

Envoyer vers



Détails



Mots-clés :
Decentralized mitigation; IBN; micro-services; Opportunistic synchronization; Reaction policy; Cyber-attacks; Decentralised; Digital infrastructures; Error prone tasks; Intent-based networking; Micro services; Security management; Computer Networks and Communications; Software; Safety, Risk, Reliability and Quality
Résumé :
[en] The escalating number of cyberattacks poses a significant threat to digital infrastructures. Defining and deploying accurate countermeasures is challenging because of (1) the variety of threats and their possible evolution over time and (2) the need to enforce them as fast as possible, especially for fast-propagating attacks. Intent-Based Networking (IBN) stands for a promising solution for security management, especially to mitigate attacks through the specification of reaction intents, saving time and avoiding error-prone tasks. Nevertheless, most current IBN solutions rely on centralized architectures performing time-consuming operations, which makes them inappropriate to timely deploy countermeasures, especially in the case of fast-propagating attacks spreading large-scale systems. As a solution to shorten the reaction time while supporting scalability, we first consider fast micro-services technologies (e.g., Unikernels) as the substrate of security functions acting as Policy Enforcement Points (PEP). Second, we propose to enable an opportunistic synchronization of those PEPs to react, at least partially but autonomously, against the ongoing attacks in a decentralized fashion. Such a solution raises challenges related to the consistency and performance of the overall enforced reaction policies. This paper presents the early stage of the PhD, outlining the specific challenges, limitations, and research required to leverage decentralized reaction using opportunistic synchronization of micro-services in an IBN framework for security.
Disciplines :
Sciences informatiques
Auteur, co-auteur :
Nguyen, Do Duc Anh;  IMT Atlantique, SOTERN - IRISA (UMR CNRS 6074), France
Alain, Pierre;  Université de Rennes, SOTERN - IRISA (UMR CNRS 6074), France
Autrel, Fabien;  IMT Atlantique, SOTERN - IRISA (UMR CNRS 6074), France
Bouabdallah, Ahmed;  IMT Atlantique, SOTERN - IRISA (UMR CNRS 6074), France
FRANCOIS, Jérôme  ;  University of Luxembourg > Interdisciplinary Centre for Security, Reliability and Trust (SNT) > SEDAN ; Inria Nancy Grand Est, France
Co-auteurs externes :
yes
Langue du document :
Anglais
Titre :
Intent-Based Attack Mitigation through Opportunistic Synchronization of Micro-Services
Date de publication/diffusion :
2024
Nom de la manifestation :
2024 IEEE 10th International Conference on Network Softwarization (NetSoft) - PhD Symposium
Lieu de la manifestation :
Saint Louis, Usa
Date de la manifestation :
24-06-2024 => 28-06-2024
Manifestation à portée :
International
Titre de l'ouvrage principal :
2024 IEEE 10th International Conference on Network Softwarization, NetSoft 2024
Maison d'édition :
Institute of Electrical and Electronics Engineers Inc.
ISBN/EAN :
9798350369588
Peer reviewed :
Peer reviewed
Subventionnement (détails) :
This work has been partially supported by the French National Research Agency under the France 2030 label (Superviz ANR-22-PECY-0008). The views reflected herein do not necessarily reflect the opinion of the French government.
Disponible sur ORBilu :
depuis le 19 décembre 2024

Statistiques


Nombre de vues
103 (dont 0 Unilu)
Nombre de téléchargements
74 (dont 0 Unilu)

citations Scopus®
 
1
citations Scopus®
sans auto-citations
1
OpenCitations
 
0
citations OpenAlex
 
0

Bibliographie


Publications similaires



Contacter ORBilu