Netinfo Security ›› 2019, Vol. 19 ›› Issue (10): 1-9.doi: 10.3969/j.issn.1671-1122.2019.10.001

    Next Articles

A Network Access Control System in Virtualized Environments

Xiangquan SHI, Jing TAO(), Baokang ZHAO   

  1. College of Computer, National University of Defense Technology, Changsha Hunan 410073, China
  • Received:2019-05-10 Online:2019-10-10 Published:2020-05-11
  • Contact: Jing TAO E-mail:ellen5702@aliyun.com

Abstract:

Network access control technology is one of the main technologies to ensure the security of network communication systems. It is widely used in traditional data centers, campus networks and enterprise networks. However, in virtualized environment, traditional port-based network access control (PNAC) is difficult to effectively control virtual machine network access. This paper comprehensively analyzes the reasons of the failure of traditional network access control technology in virtualized environment, develops a network access control framework VE-NAC for virtualized environment, and designs the network access control process suitable for virtualized environment. VE-NAC is compatible with 802.1x protocol and does not need to modify the authentication client. This paper implements VE-NAC in openstack virtualization environment, and tests the functions and delay of VE-NAC prototype system, which verifies the validity and feasibility of VE-NAC implementing network access control in virtualization environment.

Key words: virtualized environment, SDN, OpenFlow, network access control

CLC Number: