SDI-CSCS: Collaborative Research: S2OS: Enabling Infrastructure-Wide Programmable Security with SDI

SDI-CSCS:协作研究:S2OS:通过 SDI 实现基础设施范围内的可编程安全性

基本信息

  • 批准号:
    1700499
  • 负责人:
  • 金额:
    $ 40万
  • 依托单位:
  • 依托单位国家:
    美国
  • 项目类别:
    Continuing Grant
  • 财政年份:
    2017
  • 资助国家:
    美国
  • 起止时间:
    2017-09-01 至 2021-04-30
  • 项目状态:
    已结题

项目摘要

Traditionally, many of our critical systems have been developed with security as a reactive add-on, rather than a by default design. As a result, existing security mechanisms are often fragmented, hard to configure or verify, which makes it difficult to defend against various cyber attacks. This project will build the "holy grail" for enterprise/cloud/data-center security management with software-defined infrastructure (SDI): a unified framework for security and management of disparate resources, ranging from processes to storage to networking. Cloud computing is now an essential part of our national cyberinfrastructure; the proposed work will lower the total cost of ownership for clouds - further unlocking economic and environmental benefits - as well as improving the security of today's clouds.This project proposes S2OS (SDI-defined Security Operating System), which abstracts security capabilities and primitives at both the host Operating System (OS) and network levels and offers an easy-to-use and programmable security model for monitoring and dynamically securing applications. This project will explore new techniques to transparently compose software into a unified enterprise, even if the individual pieces were never explicitly designed to inter-operate, similar in a way a traditional operating system managing various hardware resources for upper-layer user applications. Further, this project will contribute new ways to leverage global information for making effective local security management decisions. Finally, this project enables new innovations in programming dynamic, host-network coordinated, and intelligent security applications to protect the entire infrastructure.This project will make significant contributions to how enterprise, data centers and cloud computing are securely built and managed. The project's PIs will engage in educational and outreach activities to train the next generation talent. In particular, the PIs plan to integrate the interdisciplinary research ideas into courses spanning networking, systems and security. The project will also actively encourage participation from underrepresented groups and transfer technology to industry partners.
传统上,我们的许多关键系统都是用安全性作为一个反应性附加组件开发的,而不是默认的设计。结果,现有的安全机制通常是分散的,难以配置或验证,这使得很难防御各种网络攻击。该项目将使用软件定义的基础架构(SDI)构建用于企业/云/数据中心安全管理的“圣杯”:一个统一的安全和不同资源管理框架,从流程到存储到网络,范围从流程到网络。云计算现在是我们国家网络基础设施的重要组成部分。拟议的工作将降低云的总拥有成本 - 进一步释放经济和环境收益 - 以及改善当今云的安全性。本项目提出了S2OS(SDI定义的安全操作系统),从而使安全能力和原始功能和原始措施在主机操作系统(OS)和网络级别上都提供了易于使用的安全性,并提供了一种易于使用和程序,并提供了一个易于使用和程序,以监视和程序化的模型。该项目将探索新的技术,以将软件透明地构成统一的企业,即使单个部件从未明确设计为相互互动的,以一种传统的操作系统管理各种硬件资源用于上层用户应用程序。此外,该项目将贡献新的方式来利用全球信息来做出有效的本地安全管理决策。最后,该项目可以在编程动态,主机网络协调和智能安全应用程序中进行新的创新,以保护整个基础架构。此项目将对企业,数据中心和云计算的构建和管理如何为企业,数据中心和云计算做出重大贡献。该项目的PI将从事教育和外展活动,以培训下一代人才。特别是,PIS计划将跨学科研究思想整合到涵盖网络,系统和安全性的课程中。该项目还将积极鼓励代表性不足的群体和将技术转移给行业合作伙伴的参与。

项目成果

期刊论文数量(20)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
Poseidon: Mitigating Volumetric DDoS Attacks with Programmable Switches
Poseidon:利用可编程开关缓解容量 DDoS 攻击
Towards Efficient Traffic Monitoring for Science DMZ with Side-Channel based Traffic Winnowing
利用基于侧信道的流量风选实现科学 DMZ 的高效流量监控
vNIDS: Towards Elastic Security with Safe and Efficient Virtualization of Network Intrusion Detection Systems
Interpreting Deep Learning-Based Networking Systems
Grus: Enabling Latency SLOs for GPU-Accelerated NFV Systems
共 19 条
  • 1
  • 2
  • 3
  • 4
前往

Hongxin Hu其他文献

Tripod: Towards a Scalable, Efficient and Resilient Cloud Gateway
Tripod:迈向可扩展、高效且有弹性的云网关
Dynamic Audit Services for Outsourced Storages in Clouds
云中外包存储的动态审计服务
Enabling Collaborative Data Sharing in Google + ( Technical Report , SEFCOM , March 2012 )
在 Google 中实现协作数据共享(技术报告,SEFCOM,2012 年 3 月)
  • DOI:
  • 发表时间:
    2012
    2012
  • 期刊:
  • 影响因子:
    0
  • 作者:
    Hongxin Hu;Gail;Jan Jorgensen
    Hongxin Hu;Gail;Jan Jorgensen
  • 通讯作者:
    Jan Jorgensen
    Jan Jorgensen
Effectiveness and Users’ Experience of Face Blurring as a Privacy Protection for Sharing Photos via Online Social Networks
面部模糊作为在线社交网络共享照片隐私保护的有效性和用户体验
MCDefender: Toward Effective Cyberbullying Defense in Mobile Online Social Networks
MCDefender:在移动在线社交网络中实现有效的网络欺凌防御
共 30 条
  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
前往

Hongxin Hu的其他基金

Collaborative Research: SAI-R: Integrative Cyberinfrastructure for Enhancing and Accelerating Online Abuse Research
合作研究:SAI-R:用于加强和加速在线滥用研究的综合网络基础设施
  • 批准号:
    2228617
    2228617
  • 财政年份:
    2022
  • 资助金额:
    $ 40万
    $ 40万
  • 项目类别:
    Standard Grant
    Standard Grant
SDI-CSCS: Collaborative Research: S2OS: Enabling Infrastructure-Wide Programmable Security with SDI
SDI-CSCS:协作研究:S2OS:通过 SDI 实现基础设施范围内的可编程安全性
  • 批准号:
    2128107
    2128107
  • 财政年份:
    2021
  • 资助金额:
    $ 40万
    $ 40万
  • 项目类别:
    Continuing Grant
    Continuing Grant
CAREER: Towards Elastic Security with Safe and Efficient Network Security Function Virtualization
职业:通过安全高效的网络安全功能虚拟化迈向弹性安全
  • 批准号:
    2129164
    2129164
  • 财政年份:
    2021
  • 资助金额:
    $ 40万
    $ 40万
  • 项目类别:
    Continuing Grant
    Continuing Grant
Collaborative Research: CICI: Secure and Resilient Architecture: SciGuard: Building a Security Architecture for Science DMZ Based on SDN and NFV Technologies
合作研究:CICI:安全和弹性架构:SciGuard:基于SDN和NFV技术构建科学DMZ安全架构
  • 批准号:
    2128607
    2128607
  • 财政年份:
    2021
  • 资助金额:
    $ 40万
    $ 40万
  • 项目类别:
    Standard Grant
    Standard Grant
Collaborative Research: EAGER: SaTC-EDU: Learning Platform and Education Curriculum for Artificial Intelligence-Driven Socially-Relevant Cybersecurity
合作研究:EAGER:SaTC-EDU:人工智能驱动的社会相关网络安全的学习平台和教育课程
  • 批准号:
    2114982
    2114982
  • 财政年份:
    2021
  • 资助金额:
    $ 40万
    $ 40万
  • 项目类别:
    Standard Grant
    Standard Grant
CAREER: Towards Elastic Security with Safe and Efficient Network Security Function Virtualization
职业:通过安全高效的网络安全功能虚拟化迈向弹性安全
  • 批准号:
    1846291
    1846291
  • 财政年份:
    2019
  • 资助金额:
    $ 40万
    $ 40万
  • 项目类别:
    Continuing Grant
    Continuing Grant
NSF Student Travel Grant for 2018 ACM International Workshop on Security in Software Defined Networks and Network Function Virtualization (SDN-NFV Security)
NSF 学生旅费补助金用于 2018 年 ACM 软件定义网络和网络功能虚拟化安全(SDN-NFV 安全)国际研讨会
  • 批准号:
    1807103
    1807103
  • 财政年份:
    2018
  • 资助金额:
    $ 40万
    $ 40万
  • 项目类别:
    Standard Grant
    Standard Grant
Collaborative Research: CICI: Secure and Resilient Architecture: SciGuard: Building a Security Architecture for Science DMZ Based on SDN and NFV Technologies
合作研究:CICI:安全和弹性架构:SciGuard:基于SDN和NFV技术构建科学DMZ安全架构
  • 批准号:
    1642143
    1642143
  • 财政年份:
    2017
  • 资助金额:
    $ 40万
    $ 40万
  • 项目类别:
    Standard Grant
    Standard Grant
SaTC: EDU: Collaborative: Enhancing Security Education through Transiting Research on Security in Emerging Network Technologies
SaTC:EDU:协作:通过新兴网络技术安全的过渡研究加强安全教育
  • 批准号:
    1723663
    1723663
  • 财政年份:
    2017
  • 资助金额:
    $ 40万
    $ 40万
  • 项目类别:
    Standard Grant
    Standard Grant
EAGER: Defending Against Visual Cyberbullying Attacks in Emerging Mobile Social Networks
EAGER:防御新兴移动社交网络中的视觉网络欺凌攻击
  • 批准号:
    1537924
    1537924
  • 财政年份:
    2015
  • 资助金额:
    $ 40万
    $ 40万
  • 项目类别:
    Standard Grant
    Standard Grant

相似国自然基金

脾虚内环境下调RDH5激活Hippo/YAP通路调控肝癌CSCs干性及健脾中药干预的机制
  • 批准号:
    82304944
  • 批准年份:
    2023
  • 资助金额:
    30 万元
  • 项目类别:
    青年科学基金项目
基于BNIP3/HIF-1α通路介导CSCs干性维持探讨夏枯草总黄酮抑制肝癌复发的作用机制
  • 批准号:
  • 批准年份:
    2022
  • 资助金额:
    30 万元
  • 项目类别:
    青年科学基金项目
基于BNIP3/HIF-1α通路介导CSCs干性维持探讨夏枯草总黄酮抑制肝癌复发的作用机制
  • 批准号:
    82204679
  • 批准年份:
    2022
  • 资助金额:
    30.00 万元
  • 项目类别:
    青年科学基金项目
BMSCs外泌体circRNA竞争性激活WIF1/Wnts通路介导胰腺癌CSCs去干性化机制
  • 批准号:
  • 批准年份:
    2021
  • 资助金额:
    55 万元
  • 项目类别:
    面上项目
BMSCs外泌体circRNA竞争性激活WIF1/Wnts通路介导胰腺癌CSCs去干性化机制
  • 批准号:
    82173363
  • 批准年份:
    2021
  • 资助金额:
    55.00 万元
  • 项目类别:
    面上项目

相似海外基金

SDI-CSCS: Collaborative Research: S2OS: Enabling Infrastructure-Wide Programmable Security with SDI
SDI-CSCS:协作研究:S2OS:通过 SDI 实现基础设施范围内的可编程安全性
  • 批准号:
    2128107
    2128107
  • 财政年份:
    2021
  • 资助金额:
    $ 40万
    $ 40万
  • 项目类别:
    Continuing Grant
    Continuing Grant
SDI-CSCS: Collaborative Research: S2OS Enabling Infrastructure-Wide Programmable Security with SDI
SDI-CSCS:协作研究:S2OS 通过 SDI 实现基础设施范围内的可编程安全性
  • 批准号:
    1834216
    1834216
  • 财政年份:
    2018
  • 资助金额:
    $ 40万
    $ 40万
  • 项目类别:
    Continuing Grant
    Continuing Grant
SDI-CSCS: Collaborative Research: S2OS: Enabling Infrastructure-Wide Programmable Security with SDI
SDI-CSCS:协作研究:S2OS:通过 SDI 实现基础设施范围内的可编程安全性
  • 批准号:
    1700544
    1700544
  • 财政年份:
    2017
  • 资助金额:
    $ 40万
    $ 40万
  • 项目类别:
    Continuing Grant
    Continuing Grant
SDI-CSCS: Collaborative Research: S2OS: Enabling Infrastructure-Wide Programmable Security with SDI
SDI-CSCS:协作研究:S2OS:通过 SDI 实现基础设施范围内的可编程安全性
  • 批准号:
    1700527
    1700527
  • 财政年份:
    2017
  • 资助金额:
    $ 40万
    $ 40万
  • 项目类别:
    Continuing Grant
    Continuing Grant
SDI-CSCS: Collaborative Research: S2OS Enabling Infrastructure-Wide Programmable Security with SDI
SDI-CSCS:协作研究:S2OS 通过 SDI 实现基础设施范围内的可编程安全性
  • 批准号:
    1700507
    1700507
  • 财政年份:
    2017
  • 资助金额:
    $ 40万
    $ 40万
  • 项目类别:
    Continuing Grant
    Continuing Grant