• DocumentCode
    2739150
  • Title

    Towards migrating security policies of virtual machines in Software Defined Networks

  • Author

    Sadri, Sahba ; Jarraya, Yosr ; Eghtesadi, Arash ; Debbabi, Mourad

  • Author_Institution
    Concordia Inst. for Inf. Syst. Eng. (CIISE), Concordia Univ., Montreal, QC, Canada
  • fYear
    2015
  • fDate
    13-17 April 2015
  • Firstpage
    1
  • Lastpage
    9
  • Abstract
    Virtual machine migration is an essential capability that supports cloud service elasticity. However, there is a big concern on what happens to the security policy associated with the migrated machine. Recently, Software Defined Networking (SDN) has gained momentum in both research and industry. It has shown great potential to be used in cloud data centers, particularly for inter-domains migration of virtual machines. In this paper, we propose a novel framework, to be deployed in an SDN environment that coordinates the mobility of the associated security policy along with the migrated virtual machine. We implemented our framework into a prototype application, called MigApp that runs on top of SDN controllers. Our application interacts with the virtual machine monitor and other instances of MigApp through messaging system to achieve security migration. In order to evaluate our framework, we integrate our application with the Floodlight controller and use it with a simulation environment.
  • Keywords
    cloud computing; security of data; software defined networking; virtual machines; Floodlight controller; MigApp; SDN controllers; SDN environment; cloud data centers; cloud service elasticity; messaging system; migrated virtual machine; security migration; security policy; software defined networking; software defined networks; virtual machine migration; virtual machine monitor; Cloud computing; Control systems; IP networks; Middleboxes; Protocols; Security; Virtual machine monitors;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Network Softwarization (NetSoft), 2015 1st IEEE Conference on
  • Conference_Location
    London
  • Type

    conf

  • DOI
    10.1109/NETSOFT.2015.7116165
  • Filename
    7116165