Software Defined Networking (SDN) is a widely deployed technology enabling the agile and flexible management of networks and services. This paradigm represents an appropriate candidate to address the dynamic and secure management of large and complex Authentication, Authorization and Accounting (AAA) infrastructures. In those infrastructures, there are several nodes which must exchange information securely to interconnect different realms. This article describes a novel SDN-based framework with a data model-driven approach following the standard YANG, named SDN-AAA, which can be used to dynamically manage routing and security configuration in AAA scenarios.
翻译:软件定义网络(SDN)是一种广泛部署的技术,能够实现网络和服务的敏捷灵活管理。该范式是应对大型复杂认证、授权与计费(AAA)基础设施动态安全管理的理想候选方案。在此类基础设施中,多个节点必须安全地交换信息以实现不同域间的互联。本文提出了一种基于SDN的新型框架,采用遵循标准YANG数据模型驱动的方法,命名为SDN-AAA,可用于在AAA场景中动态管理路由与安全配置。