SPECIAL TOPIC: Security and Availability of SDN And
Total Page:16
File Type:pdf, Size:1020Kb
An International ICT R&D Journal Sponsored by ZTE Corporation ISSN 1673-5188 CN 34-1294/ TN CODEN ZCTOAK ZTE COMMUNICATIONS ZTE COMMUNICATIONS 中兴通讯技术(英文版) 中兴通讯技术 http://tech.zte.com.cn December 2018, Vol. 16 No. 4 ( 英文版 ) SPECIAL TOPIC: Security and Availability of SDN and NFV VOLUME 16 NUMBER 4 DECEMBER 2018 • •• • •• • •• • •• • •• • •• • •• • •• • •• • ••• •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • ••• •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • ••• •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • ••• •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • ••• •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • ••• •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • •• • ••• •• • •• • •• • •• • •• • •• • •• • •• • •• The 8th Editorial Board of ZTE Communications Chairman GAO Wen: Peking University (China) Vice Chairmen XU Ziyang: ZTE Corporation (China) XU ChengƼZhong: Wayne State University (USA) Members (in Alphabetical Order): CAO Jiannong Hong Kong Polytechnic University (China) CHEN Chang Wen University at Buffalo, The State University of New York (USA) CHEN Yan Northwestern University (USA) CHI Nan Fudan University (China) CUI Shuguang The Chinese University of Hong Kong, Shenzhen (China) GAO Wen Peking University (China) HWANG Jenq⁃Neng University of Washington (USA) Victor C. M. Leung The University of British Columbia (Canada) LI Guifang University of Central Florida (USA) LIU Ming Institute of Microelectronics of the Chinese Academy of Sciences (China) LUO Fa⁃Long Element CXI (USA) MA Jianhua Hosei University (Japan) PAN Yi Georgia State University (USA) REN Fuji The University of Tokushima (Japan) SONG Wenzhan University of Georgia (USA) SUN Huifang Mitsubishi Electric Research Laboratories (USA) SUN Zhili University of Surrey (UK) TAO Meixia Shanghai Jiao Tong University (China) WANG Xiang ZTE Corporation (China) WANG Xiaodong Columbia University (USA) WANG Zhengdao Iowa State University (USA) XU Cheng⁃Zhong Wayne State University (USA) XU Ziyang ZTE Corporation (China) YANG Kun University of Essex (UK) YUAN Jinhong University of New South Wales (Australia) ZENG Wenjun Microsoft Research Asia (USA) ZHANG Chengqi University of Technology Sydney (Australia) ZHANG Honggang Zhejiang University (China) ZHANG Yueping Nanyang Technological University (Singapore) ZHOU Wanlei Deakin University (Australia) ZHUANG Weihua University of Waterloo (Canada) CONTENTS An International ICT R&D Journal Sponsored by ZTE Corporation ISSN 1673-5188 CN 34-1294/ TN CODEN ZCTOAK Special Topic: Security and Availability of SDN and NFV ZTE COMMUNICATIONS 中兴通讯技术(英文版) 01 Editorial http://tech.zte.com.cn December 2018, Vol. 16 No. 4 CHEN Yan SPECIAL TOPIC: Security and Availability of SDN and NFV 03 Survey of Attacks and Countermeasures for SDN In this paper, the authors analyze the vulnerability of software defined network⁃ ing (SDN). They present two kinds of SDN⁃targeted attacks: the data⁃to⁃control plane saturation attack and the control plane reflection attack, and then pro⁃ pose the corresponding defense frameworks to mitigate such attacks. BAI Jiasong, ZHANG Menghao, and BI Jun 09 SDN Based Security Services With the implementation of SDN, network security solution could be more flexi⁃ ble and efficient. Moreover, combined with cloud computing and SDN technolo⁃ gy, network security services could be lighter⁃weighted, more flexible, and on⁃ demanded. This paper analyzes some typical SDN based network security ser⁃ Submission of a manuscript implies that vices, and provide a research on SDN based cloud security service and its im⁃ the submitted work has not been published plementation in Internet data centers (IDCs). before (except as part of a thesis or lecture ZHANG Yunyong, XU Lei, and TAO Ye note or report or in the form of an abstract); that it is not under consideration Optimization Framework for Minimizing Rule Update Latency in SDN for publication elsewhere; that its 15 publication has been approved by all Switches co-authors as well as by the authorities In this paper, the authors present RuleTris, the first SDN update optimization at the institute where the work has been framework that minimizes rule update latency for the prevailing ternary content⁃ carried out; that, if and when the addressable memory (TCAM) based switches. RuleTris employs the dependen⁃ manuscript is accepted for publication, the cy graph (DAG) as the key abstraction to minimize the update latency. Rule⁃ authors hand over the transferable Tris efficiently obtains the DAGs with novel dependency preserving algorithms copyrights of the accepted manuscript to that incrementally build rule dependency along with the compilation process. ZTE Communications; and that the Then, in the guidance of the DAG, RuleTris calculates the TCAM update manuscript or parts thereof will not be schedules that minimize TCAM entry moves, which are the main cause of published elsewhere in any language TCAM update inefficiency. without the consent of the copyright holder. Copyrights include, without spatial CHEN Yan, WEN Xitao, LENG Xue, YANG Bo, Li Erran Li, ZHENG Peng, or timely limitation, the mechanical, and HU Chengchen electronic and visual reproduction and distribution; electronic storage and 30 A New Direct Anonymous Attestation Scheme for Trusted NFV System retrieval; and all other forms of electronic The authors in this paper propose a new NFV direct anonymous attestation publication or any other types of (NFV\&DAA) scheme based on trusted NFV architecture. It is based on the El⁃ publication including all subsidiary rights. liptic curve cryptography and transfers the computation of variable D from the Responsibility for content rests on trusted platform module (TPM) to the issuer. The proposed NFV⁃DAA scheme authors of signed articles and not on the editorial board of ZTE Communications or is proved to have a higher security level and higher efficiency than those exist⁃ its sponsors. ing DAA schemes. All rights reserved. CHEN Liquan, ZHU Zheng, WANG Yansong, LU Hua, and CHEN Yang CONTENTS ZTE COMMUNICATIONS Vol. 16 No. 4 (Issue 64) Research Paper Quarterly First English Issue Published in 2003 38 Antenna Mechanical Pose Measurement Based on Structure from Motion Supervised by: A non⁃contact measuring system based on Structure from Motion (SfM) in the Anhui Science and Technology Department field of photogrammetry is proposed in this paper. The proposed system is quite Sponsored by: safe, convenient and efficient for engineers to use in their daily work. To the Anhui Science and Technology Information best of our knowledge, this is the first pipeline that solves the antenna pose Research Institute; measuring problem by the photogrammetry method on the mobile platform. Magazine House of ZTE Communications XU Kun, FAN Guotian, ZHOU Yi, ZHAN Haisheng, and GUO Zongyi Published and Circulated (Home and Abroad) by: 46 Energy Efficiency for NPUSCH in NB⁃IoT with Guard Band Magazine House of ZTE Communications Narrowband Internet of Things (NB ⁃ IoT) has been proposed to support deep Staff Members: coverage (in building) and extended geographic coverage of IoT. In this paper, Editor-in-Chief: WANG Xiang a power control scheme for maximizing energy efficiency (EE) of narrowband Executive Associate Editor-in-Chief: HUANG Xinming physical uplink shared channel (NPUSCH) with the guard band is proposed. Editor-in-Charge: ZHU Li Numerical simulation results show that NPUSCH with the guard band has bet⁃ Editors: XU Ye and LU Dan ter performance in EE than that without the guard band. Producer: YU Gang ZHANG Shuang, ZHANG Ningbo, and KANG Guixia Circulation Executive: WANG Pingping Assistant: WANG Kun Portable Atmospheric Transfer of Microwave Signal Using Diode Laser Editorial Correspondence: 52 Add: 12F Kaixuan Building, with Timing Fluctuation Suppression 329 Jinzhai Road, The authors in this paper demonstrate an atmospheric transfer of microwave Hefei 230061, China signal over a 120 m outdoor free⁃space link using a compact diode laser with a Tel: +86-551-65533356 timing fluctuation suppression technique. Timing fluctuation and Allan Devia⁃ Fax: +86-551-65850139 Email: [email protected] tion are both measured to characterize the instability of transferred frequency incurred during the transfer process. Printed by: Hefei Tiancai Color Printing Company CHEN Shijun, BAI Qingsong, CHEN Dawei, SUN Fuyu, and HOU Dong Publication Date: December 25, 2018 Review Publication Licenses: Time Sensitive Networking Technology Overview and Performance Analysis ISSN 1673-5188 57 CN 34-1294/ TN Time sensitive networking (TSN) is a set of standards developed on the basis of audio video bridging (AVB). In this paper, the TSN protocol stack is described Annual Subscription: and key technologies of network operation are summarized, including time syn⁃ RMB 80 chronization, scheduling and flow shaping, flow management and fault tolerant mechanism. FU Shousai, ZHANG Hesheng, and CHEN Jinghe Roundup Statement: This magazine is a free publication for you. If Call for Papers: Special Issue on Machine Learning for Wireless Networks you do not want to receive it in the future, you can send the 02 “TD unsubscribe”mail to [email protected]. We will 08 Call for Papers: Special Issue on Data Intelligence not send you this magazine again after receiving your email. Thank you