| Title: | PALANTIR : An NFV-Based Security-as-a-Service Approach for Automating Threat Mitigation |
|---|
| Authors: | ID Compastié, Maxime (Author) ID López Martínez, Antonio (Author) ID Fernandez, Carolina (Author) ID Gil Pérez, Manuel (Author) ID Tsarsitalidis, Stylianos (Author) ID Xylouris, George (Author) ID Mlakar, Izidor (Author) ID Kourtis, Michail Alexandros (Author) ID Šafran, Valentino (Author) |
| Files: | Compastie-2023-PALANTIR__An_NFV-Based_Security.pdf (963,42 KB) MD5: 73F98EB0F2B0FDCAAD840963632088E1
https://www.mdpi.com/1424-8220/23/3/1658
|
|---|
| Language: | English |
|---|
| Work type: | Scientific work |
|---|
| Typology: | 1.01 - Original Scientific Article |
|---|
| Organization: | FERI - Faculty of Electrical Engineering and Computer Science
|
|---|
| Abstract: | Small and medium enterprises are significantly hampered by cyber-threats as they have inherently limited skills and financial capacities to anticipate, prevent, and handle security incidents. The EU-funded PALANTIR project aims at facilitating the outsourcing of the security supervision to external providers to relieve SMEs/MEs from this burden. However, good practices for the operation of SME/ME assets involve avoiding their exposure to external parties, which requires a tightly defined and timely enforced security policy when resources span across the cloud continuum and need interactions. This paper proposes an innovative architecture extending Network Function Virtualisation to externalise and automate threat mitigation and remediation in cloud, edge, and on-premises environments. Our contributions include an ontology for the decision-making process, a Fault-and-Breach-Management-based remediation policy model, a framework conducting remediation actions, and a set of deployment models adapted to the constraints of cloud, edge, and on-premises environment(s). Finally, we also detail an implementation prototype of the framework serving as evaluation material. |
|---|
| Keywords: | Security-as-a-Service, security orchestration, policy-driven management, virtual network functions, finite state machines, constraints programming |
|---|
| Publication status: | Published |
|---|
| Publication version: | Version of Record |
|---|
| Submitted for review: | 19.12.2022 |
|---|
| Article acceptance date: | 31.01.2023 |
|---|
| Publication date: | 02.02.2023 |
|---|
| Publisher: | MDPI |
|---|
| Year of publishing: | 2023 |
|---|
| Number of pages: | Str. 1-37 |
|---|
| Numbering: | Letn. 23, št. 3, št. članka 1658 |
|---|
| PID: | 20.500.12556/DKUM-87004-83146531-ad49-6429-29e8-8c5111480716  |
|---|
| UDC: | 004.5 |
|---|
| ISSN on article: | 1424-8220 |
|---|
| COBISS.SI-ID: | 140543235  |
|---|
| DOI: | 10.3390/s23031658  |
|---|
| Publication date in DKUM: | 06.02.2024 |
|---|
| Views: | 506 |
|---|
| Downloads: | 34 |
|---|
| Metadata: |  |
|---|
| Categories: | Misc.
|
|---|
|
:
|
Copy citation |
|---|
| | | | Average score: | (0 votes) |
|---|
| Your score: | Voting is allowed only for logged in users. |
|---|
| Share: |  |
|---|
Hover the mouse pointer over a document title to show the abstract or click
on the title to get all document metadata. |