...
首页> 外文期刊>Procedia Computer Science >Secure architecture for Cloud/Fog computing based on firewalls and controllers
【24h】

Secure architecture for Cloud/Fog computing based on firewalls and controllers

机译:基于防火墙和控制器的云/雾计算的安全架构

获取原文
           

摘要

The concept of distribution in the Cloud and Fog computing makes the network more vulnerable to malicious activities. This requires use of distributed firewalls to stop incoming intrusions, where the Controllers are used to mitigate rules for the purpose of cooperation based on risk analysis. These security components are used in the architecture of Distributed Cloud / Fog with a zoned topology.We propose in this paper to use this topology that implements an access-control based on a set of cooperation levels between user-FN (FN: Node Fog). In addition, we secure the exchange of cooperation messages by guaranteeing integrity, confidentiality and authentication while avoiding replay attacks. This improves the security of the cloud network. As proof, we simulate Cloud/Fog network using the NeSSi2 tool. This simulation obtained results are hopeful in term of delay and transmission rate must be a decrease of 1.5 ms. Furthermore, the protocol used in exchange of cooperation messages, is analyzed using Security Protocol Animator (SPAN) for Automated Validation of Internet Security Protocols and Applications (AVISPA) tool. The obtained validation results show that the scheme is safe.
机译:云和雾计算中分布的概念使网络更容易受到恶意活动的影响。这需要使用分布式防火墙来停止进入入侵,其中控制器用于减轻基于风险分析的合作目的规则。这些安全组件用于具有分区拓扑的分布式云/雾的体系结构。我们在本文中建议使用此拓扑,该拓扑结构基于用户-FN(FN:Node Fog)之间的一组合作级别实现访问控制。此外,我们通过保证完整性,机密性和身份验证来确保交换合作消息,同时避免重播攻击。这提高了云网络的安全性。作为证据,我们使用Nessi2工具模拟云/雾网络。该模拟获得的结果在延迟期限内希望,传输速率必须降低1.5毫秒。此外,使用安全协议动画(SPAN)分析用于交换合作消息的协议,以自动验证Internet安全协议和应用程序(AVISPA)工具。获得的验证结果表明该方案是安全的。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号