Abstract
With network functions virtualization, an organization gains an ability to provide a much more agile security infrastruc- ture. In this paper we focus on vulnerabilities and challenges created by this new exibility itself. In particular, using Bro as a case study, we present I) a framework for testing Bro scripts using a packet traces, II) a complementary framework for testing the performance impact of Bro scripts, III) a con- tinuous integration system for triggering automatic testing in response to code changes. With this system, security ad- ministrators are protected against logic errors in new and modified scripts as well as performance degradation.
Cite
CITATION STYLE
Monaco, M., Tsankov, A., & Keller, E. (2016). Taking the surprise out of changes to a bro setup. In SDN-NFV Security 2016 - Proceedings of the 2016 ACM International Workshop on Security in Software Defined Networks and Network Function Virtualization, co-located with CODASPY 2016 (pp. 49–52). Association for Computing Machinery, Inc. https://doi.org/10.1145/2876019.2876031
Register to see more suggestions
Mendeley helps you to discover research relevant for your work.