Item request has been placed! ×
Item request cannot be made. ×
loading  Processing Request

Intent-Based Attack Mitigation through Opportunistic Synchronization of Micro-Services

Item request has been placed! ×
Item request cannot be made. ×
loading   Processing Request
  • معلومة اضافية
    • Contributors:
      Self-prOtecting The futurE inteRNet (SOTERN); IMT Atlantique (IMT Atlantique); Institut Mines-Télécom Paris (IMT)-Institut Mines-Télécom Paris (IMT)-RÉSEAUX, TÉLÉCOMMUNICATION ET SERVICES (IRISA-D2); Institut de Recherche en Informatique et Systèmes Aléatoires (IRISA); Université de Rennes (UR)-Institut National des Sciences Appliquées - Rennes (INSA Rennes); Institut National des Sciences Appliquées (INSA)-Institut National des Sciences Appliquées (INSA)-Université de Bretagne Sud (UBS)-École normale supérieure - Rennes (ENS Rennes)-Institut National de Recherche en Informatique et en Automatique (Inria)-CentraleSupélec-Centre National de la Recherche Scientifique (CNRS)-IMT Atlantique (IMT Atlantique); Institut Mines-Télécom Paris (IMT)-Institut Mines-Télécom Paris (IMT)-Université de Rennes (UR)-Institut National des Sciences Appliquées - Rennes (INSA Rennes); Institut Mines-Télécom Paris (IMT)-Institut Mines-Télécom Paris (IMT)-Institut de Recherche en Informatique et Systèmes Aléatoires (IRISA); Institut National des Sciences Appliquées (INSA)-Institut National des Sciences Appliquées (INSA)-Université de Bretagne Sud (UBS)-École normale supérieure - Rennes (ENS Rennes)-Institut National de Recherche en Informatique et en Automatique (Inria)-CentraleSupélec-Centre National de la Recherche Scientifique (CNRS); Institut Mines-Télécom Paris (IMT)-Institut Mines-Télécom Paris (IMT); Département Systèmes Réseaux, Cybersécurité et Droit du numérique (IMT Atlantique - SRCD); Inria Nancy - Grand Est; Institut National de Recherche en Informatique et en Automatique (Inria); ANR-22-PECY-0008,SuperViz,SuperViz(2022)
    • بيانات النشر:
      HAL CCSD
      IEEE
    • الموضوع:
      2024
    • Collection:
      Université de Rennes 1: Publications scientifiques (HAL)
    • الموضوع:
    • نبذة مختصرة :
      International audience ; The escalating number of cyberattacks poses a significant threat to digital infrastructures. Defining and deploying accurate countermeasures is challenging because of (1) the variety of threats and their possible evolution over time and (2) the need to enforce them as fast as possible, especially for fastpropagating attacks. Intent-Based Networking (IBN) stands for a promising solution for security management, especially to mitigate attacks through the specification of reaction intents, saving time and avoiding error-prone tasks. Nevertheless, most current IBN solutions rely on centralized architectures performing timeconsuming operations, which makes them inappropriate to timely deploy countermeasures, especially in the case of fast-propagating attacks spreading large-scale systems. As a solution to shorten the reaction time while supporting scalability, we first consider fast micro-services technologies (e.g., Unikernels) as the substrate of security functions acting as Policy Enforcement Points (PEP). Second, we propose to enable an opportunistic synchronization of those PEPs to react, at least partially but autonomously, against the ongoing attacks in a decentralized fashion. Such a solution raises challenges related to the consistency and performance of the overall enforced reaction policies. This paper presents the early stage of the PhD, outlining the specific challenges, limitations, and research required to leverage decentralized reaction using opportunistic synchronization of micro-services in an IBN framework for security.
    • Relation:
      hal-04645889; https://hal.science/hal-04645889; https://hal.science/hal-04645889v1/document; https://hal.science/hal-04645889v1/file/Intent-Based%20Attack%20Mitigation%20through%250DOpportunistic%20Synchronization%20of%20Micro-Services.pdf
    • الرقم المعرف:
      10.1109/NetSoft60951.2024.10588925
    • الدخول الالكتروني :
      https://hal.science/hal-04645889
      https://hal.science/hal-04645889v1/document
      https://hal.science/hal-04645889v1/file/Intent-Based%20Attack%20Mitigation%20through%250DOpportunistic%20Synchronization%20of%20Micro-Services.pdf
      https://doi.org/10.1109/NetSoft60951.2024.10588925
    • Rights:
      info:eu-repo/semantics/OpenAccess
    • الرقم المعرف:
      edsbas.82BC0299