Multi-level attack mitigation method for 5G network based on SDN and NFV

A network and 5G technology, applied in the field of 5G network multi-level attack mitigation based on SDN and NFV, can solve the problems that cannot be directly used in 5G networks, cannot directly apply SDN-MN, etc., and achieve the effect of solving deployment problems

Active Publication Date: 2019-02-22
SHANGHAI JIAOTONG UNIV
View PDF3 Cites 3 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

There are currently many studies using attack graphs for general network security assessment, but these methods cannot be directly used in 5G networks
The second is the choice of security strategy
There are also some studies on strategy selection, but most of them study strategy selection in special environments and cannot be directly applied to SDN-MN

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Multi-level attack mitigation method for 5G network based on SDN and NFV
  • Multi-level attack mitigation method for 5G network based on SDN and NFV
  • Multi-level attack mitigation method for 5G network based on SDN and NFV

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0084] The present invention will be described in detail below in conjunction with specific embodiments. The following examples will help those skilled in the art to further understand the present invention, but do not limit the present invention in any form. It should be noted that those skilled in the art can make several modifications and improvements without departing from the concept of the present invention. These all belong to the protection scope of the present invention.

[0085] The present invention first extends the definition of SDN-MN architecture in 5G to improve system capabilities and monitor comprehensive network events and deploy network security functions in a timely manner, and then proposes an evidence-driven security assessment mechanism using SDN-MN factors and NFV detection, Finally, a mechanism for attack mitigation using SDN control and NFV deployment is proposed.

[0086] Concrete steps of the present invention include:

[0087] Step S1: Extend t...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The present invention provides a 5G network multi-level attack mitigation method based on SDN and NFV, including the following steps: Step 1: Extend the SDN-MN architecture; Step 2: According to the extended SDN-MN architecture, obtain the application of SDN-MN and the Evidence-driven security assessment mechanism for NFV detection; Step 3: measure the security level of the static network through the evidence-driven security assessment mechanism and the generated new probability evidence-driven attack graph; Step 4: Security in the evidence-driven security assessment mechanism The evaluation algorithm calculates the state node probability, action node probability and posterior probability in the attack graph; step 5: use SDN control and NFV to deploy the attack mitigation mechanism, and deploy the corresponding attack mitigation plan based on the security level obtained from the evidence-driven attack graph. The present invention can be directly applied to the 5G network, and can make policy judgment according to the current network environment in time, and solve the deployment problem of the attack mitigation policy.

Description

technical field [0001] The present invention relates to the field of mobile communication security, in particular to a multi-level attack mitigation method for 5G networks based on SDN and NFV. Background technique [0002] The development of mobile communication networks has promoted the birth of the next generation of mobile communication 5G networks. 5G networks can connect various smart devices and heterogeneous networks together, making 5G networks more diverse and complex than ever. With a large amount of sensitive and confidential information accessing 5G networks, how to provide effective security services is a key issue that 5G networks need to solve. [0003] At the same time, multi-stage attacks are one of the most harmful cybersecurity threats. It tries to conceal the attack by attacking in multiple steps, and each step deals less damage than the total damage. Most current security devices only analyze single-stage attacks, so it is difficult to prevent a comp...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Patents(China)
IPC IPC(8): H04L29/06
CPCH04L63/1433H04L63/1441H04L65/1073H04W12/121
Inventor 伍军罗世波张尚华郭龙华李建华银鹰
Owner SHANGHAI JIAOTONG UNIV
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products