技術探索

一種SDN中基於使用者的驗證機制實作簡介

中文摘要

  隨著SDN發展及企業級部署之需求日益增加,SDN解決方案的安全控管能力成為了不可或缺的要件,而可攜式裝置、筆記型電腦與BYOD(Bring your own device)風潮也使得以IP位址或者網路卡MAC資訊等靜態資訊做權限控管的方式漸趨不敷使用。本研究實作了一個使用者驗證模組,透過802.1X協定,實現SDN網路之使用者驗證功能,提供未來網管系統使用者規劃更多策略、差異化需求的可能性,並提出實際上可用的情境做為範例。

Abstract

Due to the fast developing of SDN technology and the increasing demand of enterprise-level deployment, the security management is an indispensable component in a SDN enterprise solution. Also, using static information such as IP or MAC address of network card as authentication target is also no longer sufficient according to the current portable devices, notebooks in BYOD trend. In this research, we implemented a core module of SDN Controller to cope with user authentication, which based on 802.1X protocol. With our module, network manage system user can acquire more possibility of strategic planning and demands separation. Last but not least, we made up several scenarios to demonstrate the functionality and feasibility of our system.

關鍵詞(Key Words)

軟體定義網路(Software Defined Networking;SDN)
企業網路(Enterprise Network)
使用者驗證(User Authentication)
802.1X

相關檔案: 一種SDN中基於使用者的驗證機制實作簡介(全文)