Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

Cloud computing safety protection system and method based on SDN

A security protection and cloud computing technology, applied in the field of network security, can solve the problems of not being able to complete tasks efficiently and completely, too late to meet the security requirements of cloud computing, etc., to achieve the effect of protecting security

Active Publication Date: 2014-08-06
蓝盾信息安全技术有限公司
View PDF6 Cites 73 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

However, these virtual devices cannot complete the task efficiently and completely when accurately tracking the traffic between virtual machines, the traffic flowing through specified users (such as users with IP or MAC addresses), and the traffic during virtual machine migration.
[0010] Among them, the addition and deletion of virtual devices that provide services to customers in the form of virtual machines are mostly done manually. If the number of virtual machines in the cloud environment changes sharply, it may be too late to meet the changing security requirements in cloud computing.

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Cloud computing safety protection system and method based on SDN
  • Cloud computing safety protection system and method based on SDN
  • Cloud computing safety protection system and method based on SDN

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0035] The following will clearly and completely describe the technical solutions in the embodiments of the present invention with reference to the accompanying drawings in the embodiments of the present invention. Obviously, the described embodiments are only some, not all, embodiments of the present invention. Based on the embodiments of the present invention, all other embodiments obtained by persons of ordinary skill in the art without creative efforts fall within the protection scope of the present invention.

[0036] An SDN-based cloud computing security protection system and method protects virtual machines against characteristics different from those in traditional environments, such as the number of virtual machines dynamically changing in a cloud computing environment and the location change of virtual machines caused by virtual machine migration. The method and system are based on the SDN-supporting virtual switch and virtual platform management interface, and automa...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses a cloud computing safety protection system based on an SDN. The system is composed of a controller cluster control module, an environment monitoring module and a cluster basic function guarantee module. The controller cluster control module is the core of the whole system and acquires the change situations such as addition and deletion of switches, and addition and deletion of terminals of a current network and the change situations such as addition, deletion and migration of virtual machines in a cloud computing environment according to information fed back by the environment monitoring module, virtual switches supporting the SDN and virtual platform management interfaces supporting the SDN are adopted in the environment monitoring module, and changes, caused by migration, addition and deletion of the virtual machines and other service flow changes, of safety requirements are automatically recognized under the condition that normal service operation is not affected. The cluster basic function guarantee module conducts coordinated management on multiple controllers in the cloud environment. The invention further discloses a cloud computing safety protection method based on the SDN. According to the system and the method, customizable safety protection services can be flexibly and quickly provided according to requirements in the cloud environment.

Description

technical field [0001] The invention relates to the technical field of network security, in particular to an SDN-based cloud computing security protection system and method. Background technique [0002] At present, many industries in our country have made large-scale investment in cloud computing, but most of the cloud computing construction is still in its infancy. After several years of construction, some operators, powerful enterprise units and large government information centers have initially built infrastructure as a service (IaaS) cloud, and many units have gradually transplanted non-core business to the cloud platform, while the core The transfer of business has been slow due to concerns about data leakage or business interruption in data centers and cloud platforms. Among them, the introduction of virtualization technology breaks the traditional division of network boundaries. In addition, the number of virtual machines changes rapidly and correspondingly require...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
IPC IPC(8): H04L29/06H04L29/08
Inventor 杨育斌程丽明
Owner 蓝盾信息安全技术有限公司
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products