透過您的圖書館登入
IP:3.145.49.32
  • 學位論文

利用軟體定義網路(SDN)搭配資訊安全監控中心(SOC)自動化阻擋惡意活動

Use Software Define Network Integration Security Operations Center Automation Block Cyber Attack

指導教授 : 梁德昭

摘要


傳統的網路設計架構無法有效防止駭客日益精進的攻擊,為改善傳統網路架構,我們嘗試在軟體定義網路(SDN)環境下,使用交換機取代傳統防火牆設備,並整合資訊安全監控中心(SOC),透過SOC收集各資安設備、網路設備、資料庫、作業系統、應用程式之日誌,從成千上萬錯綜複雜之日誌檔中即時擷取資訊事件與安全狀態進行關連性分析比對,找出潛在或危害組織資訊安全之行為,並即時阻擋該危險流量,透過整合可即時自動化的針對源自於外部與內部的攻擊加以防禦。 實驗結果顯示,本論文所提出SDN(設備集中化)結合SOC(資訊集中化)之概念能正確運作,並有效降低調整安全政策所需之人工作業。

並列摘要


Traditional designed network architectures are hardly effectively prevent network security from hackers increasingly sophisticated attacks. To improve the traditional network architecture for better preventation, we try to replace the traditional firewall device to software-defined network (SDN) environment by integrated using of switches and integrated information security monitoring center (SOC). The SOC collects various information from security devices, network device logs, database, operating system, applications, the intricacies of log files. From thousands of instant capture information security events connected state analysis comparison identify hazards in or organization of information security behavior shallow, and immediately stop the dangerous traffic, instant automated defense against them comes from external and internal attacks through integration. The experimental results also show that the paper proposed SDN (centralized device) combined (IT centralization) of the SOC concept works correctly, and effectively reduce the manual work required to adjust the security policy.

參考文獻


[16] 黃翊宸,民103,運用軟體定義網路消弭網路攻擊初期災害,淡江大學資訊管理學系碩士論文
[1] B. Lantz, B. Heller and N. McKeown, "A network in a laptop: rapid prototyping forsoftware-defined networks," Proc. 9th ACM SIGCOMM Workshop Hot Topics Netw.,pp.19:1 -19:6 2010.
[17] 楊順程,民105,基於SDN架構下利用動態分散服務方法阻擋藉由殭屍網路之阻斷服務攻擊,國立中正大學資訊工程研究所碩士論文
參考文獻
[2] C. Monsanto, J. Reich, N. Foster, J. Rexford and D. Walker, "Composing softwaredefinednetworks," Proc. 10th USENIX Symp. on Networked Systems Design andImplementation, NSDI., pp.1 -14 2013.

被引用紀錄


陳聰敏(2017)。以軟體定義網路實作 HTTP 即時串流之研究與實現〔碩士論文,淡江大學〕。華藝線上圖書館。https://doi.org/10.6846/TKU.2017.00738
黃逸旻(2017)。運用SDN控制內部網路安全之構想與實作〔碩士論文,淡江大學〕。華藝線上圖書館。https://doi.org/10.6846/TKU.2017.00382

延伸閱讀