Data-Centric Security in Software Defined Networks (Sdn)
暫譯: 以數據為中心的軟體定義網路安全性

Amanowicz, Marek, Szwaczyk, Sebastian, Wrona, Konrad

  • 出版商: Springer
  • 出版日期: 2025-04-12
  • 售價: $5,540
  • 貴賓價: 9.5$5,263
  • 語言: 英文
  • 頁數: 118
  • 裝訂: Quality Paper - also called trade paper
  • ISBN: 3031555198
  • ISBN-13: 9783031555190
  • 相關分類: SDN資訊安全
  • 海外代購書籍(需單獨結帳)

相關主題

商品描述

The book focuses on applying the data-centric security (DCS) concept and leveraging the unique capabilities of software-defined networks (SDN) to improve the security and resilience of corporate and government information systems used to process critical information and implement business processes requiring special protection. As organisations increasingly rely on information technology, cyber threats to data and infrastructure can significantly affect their operations and adversely impact critical business processes. Appropriate authentication, authorisation, monitoring, and response measures must be implemented within the perimeter of the system to protect against adversaries. However, sophisticated attackers can compromise the perimeter defences and even remain in the system for a prolonged time without the owner being aware of these facts. Therefore, new security paradigms such as Zero Trust and DCS aim to provide defence under the assumption that the boundary protections will be breached.

Based on experience and lessons learned from research on the application of DCS to defence systems, the authors present an approach to integrating the DCS concept with SDN. They introduce a risk-aware approach to routing in SDN, enabling defence-in-depth and enhanced security for data in transit. The book describes possible paths for an organisation to transition towards DCS, indicating some open and challenging issues requiring further investigation. To allow interested readers to conduct detailed studies and evaluate the exemplary implementation of DCS over SDN, the text includes a short tutorial on using the emulation environment and links to the websites from which the software can be downloaded.


商品描述(中文翻譯)

本書專注於應用以數據為中心的安全(DCS)概念,並利用軟體定義網路(SDN)的獨特能力,以改善企業和政府信息系統的安全性和韌性,這些系統用於處理關鍵信息並實施需要特殊保護的業務流程。隨著組織越來越依賴信息技術,對數據和基礎設施的網絡威脅可能會顯著影響其運營,並對關鍵業務流程產生不利影響。必須在系統邊界內實施適當的身份驗證、授權、監控和響應措施,以防範對手。然而,複雜的攻擊者可以突破邊界防禦,甚至在系統內長時間潛伏,而業主卻未察覺。因此,新的安全範式如零信任(Zero Trust)和DCS旨在在假設邊界保護將被突破的情況下提供防禦。

基於在DCS應用於防禦系統的研究中獲得的經驗和教訓,作者提出了一種將DCS概念與SDN整合的方法。他們介紹了一種風險意識的SDN路由方法,實現了深度防禦和增強的數據傳輸安全性。本書描述了組織向DCS過渡的可能路徑,指出了一些需要進一步研究的開放和挑戰性問題。為了讓有興趣的讀者進行詳細研究並評估DCS在SDN上的示範實施,文本中包括了一個使用模擬環境的簡短教程,以及可以下載軟體的網站鏈接。

最後瀏覽商品 (20)