Improving Security of Future Networks Using Enhanced Customer Edge Switching and Risk-Based Analysis

Customer Edge Switching (CES) is an extension of the already known classical firewall that is often described and used in future networks like 5G. It extends its functionality by enabling information exchange with other firewalls to decide whether the inspected network traffic should be considered m...

Full description

Bibliographic Details
Main Authors: Slawomir Nowaczewski, Wojciech Mazurczyk
Format: Article
Language:English
Published: MDPI AG 2021-05-01
Series:Electronics
Subjects:
Online Access:https://www.mdpi.com/2079-9292/10/9/1107
_version_ 1797534947813097472
author Slawomir Nowaczewski
Wojciech Mazurczyk
author_facet Slawomir Nowaczewski
Wojciech Mazurczyk
author_sort Slawomir Nowaczewski
collection DOAJ
description Customer Edge Switching (CES) is an extension of the already known classical firewall that is often described and used in future networks like 5G. It extends its functionality by enabling information exchange with other firewalls to decide whether the inspected network traffic should be considered malicious or legitimate. In this paper, we show how the Passive DNS can be used to further improve security of this solution. First, we discuss CES solution and its internals. We also determine how it uses DNS and CETP protocols. Secondly, we describe the basics of the Passive DNS and how it impacts the DNS protocol. Thirdly, we evaluate how the Passive DNS can be extended to collect also CETP information. Finally, we integrate the solutions and present obtained experimental results.
first_indexed 2024-03-10T11:36:44Z
format Article
id doaj.art-9c61eb9f3f2d4c169ec2e3e9aa2bce36
institution Directory Open Access Journal
issn 2079-9292
language English
last_indexed 2024-03-10T11:36:44Z
publishDate 2021-05-01
publisher MDPI AG
record_format Article
series Electronics
spelling doaj.art-9c61eb9f3f2d4c169ec2e3e9aa2bce362023-11-21T18:47:48ZengMDPI AGElectronics2079-92922021-05-01109110710.3390/electronics10091107Improving Security of Future Networks Using Enhanced Customer Edge Switching and Risk-Based AnalysisSlawomir Nowaczewski0Wojciech Mazurczyk1Institute of Computer Science, Warsaw University of Technology, Nowowiejska 15/19, 00-665 Warsaw, PolandInstitute of Computer Science, Warsaw University of Technology, Nowowiejska 15/19, 00-665 Warsaw, PolandCustomer Edge Switching (CES) is an extension of the already known classical firewall that is often described and used in future networks like 5G. It extends its functionality by enabling information exchange with other firewalls to decide whether the inspected network traffic should be considered malicious or legitimate. In this paper, we show how the Passive DNS can be used to further improve security of this solution. First, we discuss CES solution and its internals. We also determine how it uses DNS and CETP protocols. Secondly, we describe the basics of the Passive DNS and how it impacts the DNS protocol. Thirdly, we evaluate how the Passive DNS can be extended to collect also CETP information. Finally, we integrate the solutions and present obtained experimental results.https://www.mdpi.com/2079-9292/10/9/1107Custom Edge Switching (CES)passive DNSDNSpassive CETPCETPrisk-based
spellingShingle Slawomir Nowaczewski
Wojciech Mazurczyk
Improving Security of Future Networks Using Enhanced Customer Edge Switching and Risk-Based Analysis
Electronics
Custom Edge Switching (CES)
passive DNS
DNS
passive CETP
CETP
risk-based
title Improving Security of Future Networks Using Enhanced Customer Edge Switching and Risk-Based Analysis
title_full Improving Security of Future Networks Using Enhanced Customer Edge Switching and Risk-Based Analysis
title_fullStr Improving Security of Future Networks Using Enhanced Customer Edge Switching and Risk-Based Analysis
title_full_unstemmed Improving Security of Future Networks Using Enhanced Customer Edge Switching and Risk-Based Analysis
title_short Improving Security of Future Networks Using Enhanced Customer Edge Switching and Risk-Based Analysis
title_sort improving security of future networks using enhanced customer edge switching and risk based analysis
topic Custom Edge Switching (CES)
passive DNS
DNS
passive CETP
CETP
risk-based
url https://www.mdpi.com/2079-9292/10/9/1107
work_keys_str_mv AT slawomirnowaczewski improvingsecurityoffuturenetworksusingenhancedcustomeredgeswitchingandriskbasedanalysis
AT wojciechmazurczyk improvingsecurityoffuturenetworksusingenhancedcustomeredgeswitchingandriskbasedanalysis