Enabling Secure Outsourced Middlebox Services
Enabling Secure Outsourced Middlebox Services
Instructors/Speakers Dr. Cong WANG City University of Hong Kong Abstract Modern enterprise networks heavily rely on the ubiquitous network middleboxes for advanced traffic-processing functions, such as intrusion detection, web application firewalls, and load balancers. Recent advances in software packet processing and virtualization technologies are further pushing forward the paradigm of migrating middleboxes to third-party providers, e.g., clouds and ISPs, as virtualized services, with well-understood benefits on reduced maintenance cost and increased service scalability. Despite promising, this new paradigm of middlebox services also raises fundamental security challenges. This is majorly because the network traffic is now redirected to and processed by service providers, which are not necessarily in the same trust domain as enterprises. In this talk, I will present some ...