Bakhareva N.F., Polezhaev P.N., Ushakov U.A., Shukhman A.E. MANAGEMENT OF ENTERPRISE SOFTWARE DEFINED NETWORKSThe existing solutions for enterprise networks have a number of drawbacks. First, there is a problem deciding where to install the security tools, which are usually placed at the subnet borders. This leads to the fact, that they only handle the traffic transmitted through them. It reduces the level of network security. Second, there is the problem of the efficient network traffic routing while ensuring quality of service at the appropriate level. To solve these problems we propose the usage of the software-defined network technology. On the base of this technology, the prototype's architecture for network security system of enterprise SDN is proposed. It includes the implementation of the algorithms for firewall, authentication, routing and delivering QoS. The proposed authentication algorithm for enterprise SDN supports IEEE802.1x, EAP, RADIUS, LDAP, WPA2-EAP. SDN is used to isolate the data streams of different users with the ability to create any number of isolated virtual networks without restrictions of VLAN, and to implement additional access control by firewall. The experimental results of the prototype research show the efficiency and suitability of the developed algorithms for enterprise SDNs. The results can be used to deploy enterprise SDNs in companies of the Orenburg region.Key words: software-defined networks, enterprise networks, authentication, routing, QoS, firewall.
Authors: Bahareva N.F., Shuhman A.E., Ushakov Yu.A., Polezhaev P.N.
Year: 2015
