• Complex
  • Title
  • Keyword
  • Abstract
  • Scholars
  • Journal
  • ISSN
  • Conference
搜索

Author:

Li, Chunxiao (Li, Chunxiao.) | Guo, Yu (Guo, Yu.) | Wang, Xia (Wang, Xia.)

Indexed by:

EI Scopus

Abstract:

The prosperity of network function virtualization (NFV) pushes forward the paradigm of migrating in-house middleboxes to third-party providers, i.e., software (virtualized) middlebox services. A lot of enterprises have outsourced traffic processing such as deep packet inspection(DPI), traffic classification, and load balancing to middleboxes provided by cloud providers. However, if the traffic is forwarded to the cloud provider without careful processing, it will cause privacy leakage, as the cloud provider has all the rights to access the data. To solve the security issue, recent efforts are made to design secure middleboxes that can directly conduct network functions over encrypted traffic and middlebox rules. However, security concerns from dynamic operations like dynamic DPI and rule updates are still not yet fully addressed. In this paper, we propose a privacy-preserving dynamic DPI scheme with forward privacy for outsourced middleboxes. Our design can enable cloud side middlebox to conduct secure packet inspection over encrypted traffic data. Besides, the middlebox providers cannot analyze the relationship between the newly added rules and the previous data. Several recent papers have proven that it is a strong property that resist adaptive attacks. Furthermore, we design a general method to inspect stateful packets while still ensuring the state privacy protection. We formally define and prove the security of our design. Finally, we implement a system prototype and analyze the performance from experimental aspects. The evaluation results demonstrate our scheme is effective and efficient. © 2021

Keyword:

Virtual reality Privacy-preserving techniques Network function virtualization Packet networks Transfer functions Network security Inspection

Author Community:

  • [ 1 ] [Li, Chunxiao]Beijing Normal University, China
  • [ 2 ] [Guo, Yu]Beijing Normal University, China
  • [ 3 ] [Wang, Xia]Beijing University of Technology, China

Reprint Author's Address:

Email:

Show more details

Related Keywords:

Related Article:

Source :

High-Confidence Computing

Year: 2022

Issue: 1

Volume: 2

Cited Count:

WoS CC Cited Count:

SCOPUS Cited Count: 9

ESI Highly Cited Papers on the List: 0 Unfold All

WanFang Cited Count:

Chinese Cited Count:

30 Days PV: 2

Affiliated Colleges:

Online/Total:497/10577513
Address:BJUT Library(100 Pingleyuan,Chaoyang District,Beijing 100124, China Post Code:100124) Contact Us:010-67392185
Copyright:BJUT Library Technical Support:Beijing Aegean Software Co., Ltd.