Improving Security of Future Networks Using Enhanced Customer Edge Switching and Risk-Based Analysis
Customer Edge Switching (CES) is an extension of the already known classical firewall that is often described and used in future networks like 5G. It extends its functionality by enabling information exchange with other firewalls to decide whether the inspected network traffic should be considered m...
Main Authors: | , |
---|---|
Format: | Article |
Language: | English |
Published: |
MDPI AG
2021-05-01
|
Series: | Electronics |
Subjects: | |
Online Access: | https://www.mdpi.com/2079-9292/10/9/1107 |
_version_ | 1797534947813097472 |
---|---|
author | Slawomir Nowaczewski Wojciech Mazurczyk |
author_facet | Slawomir Nowaczewski Wojciech Mazurczyk |
author_sort | Slawomir Nowaczewski |
collection | DOAJ |
description | Customer Edge Switching (CES) is an extension of the already known classical firewall that is often described and used in future networks like 5G. It extends its functionality by enabling information exchange with other firewalls to decide whether the inspected network traffic should be considered malicious or legitimate. In this paper, we show how the Passive DNS can be used to further improve security of this solution. First, we discuss CES solution and its internals. We also determine how it uses DNS and CETP protocols. Secondly, we describe the basics of the Passive DNS and how it impacts the DNS protocol. Thirdly, we evaluate how the Passive DNS can be extended to collect also CETP information. Finally, we integrate the solutions and present obtained experimental results. |
first_indexed | 2024-03-10T11:36:44Z |
format | Article |
id | doaj.art-9c61eb9f3f2d4c169ec2e3e9aa2bce36 |
institution | Directory Open Access Journal |
issn | 2079-9292 |
language | English |
last_indexed | 2024-03-10T11:36:44Z |
publishDate | 2021-05-01 |
publisher | MDPI AG |
record_format | Article |
series | Electronics |
spelling | doaj.art-9c61eb9f3f2d4c169ec2e3e9aa2bce362023-11-21T18:47:48ZengMDPI AGElectronics2079-92922021-05-01109110710.3390/electronics10091107Improving Security of Future Networks Using Enhanced Customer Edge Switching and Risk-Based AnalysisSlawomir Nowaczewski0Wojciech Mazurczyk1Institute of Computer Science, Warsaw University of Technology, Nowowiejska 15/19, 00-665 Warsaw, PolandInstitute of Computer Science, Warsaw University of Technology, Nowowiejska 15/19, 00-665 Warsaw, PolandCustomer Edge Switching (CES) is an extension of the already known classical firewall that is often described and used in future networks like 5G. It extends its functionality by enabling information exchange with other firewalls to decide whether the inspected network traffic should be considered malicious or legitimate. In this paper, we show how the Passive DNS can be used to further improve security of this solution. First, we discuss CES solution and its internals. We also determine how it uses DNS and CETP protocols. Secondly, we describe the basics of the Passive DNS and how it impacts the DNS protocol. Thirdly, we evaluate how the Passive DNS can be extended to collect also CETP information. Finally, we integrate the solutions and present obtained experimental results.https://www.mdpi.com/2079-9292/10/9/1107Custom Edge Switching (CES)passive DNSDNSpassive CETPCETPrisk-based |
spellingShingle | Slawomir Nowaczewski Wojciech Mazurczyk Improving Security of Future Networks Using Enhanced Customer Edge Switching and Risk-Based Analysis Electronics Custom Edge Switching (CES) passive DNS DNS passive CETP CETP risk-based |
title | Improving Security of Future Networks Using Enhanced Customer Edge Switching and Risk-Based Analysis |
title_full | Improving Security of Future Networks Using Enhanced Customer Edge Switching and Risk-Based Analysis |
title_fullStr | Improving Security of Future Networks Using Enhanced Customer Edge Switching and Risk-Based Analysis |
title_full_unstemmed | Improving Security of Future Networks Using Enhanced Customer Edge Switching and Risk-Based Analysis |
title_short | Improving Security of Future Networks Using Enhanced Customer Edge Switching and Risk-Based Analysis |
title_sort | improving security of future networks using enhanced customer edge switching and risk based analysis |
topic | Custom Edge Switching (CES) passive DNS DNS passive CETP CETP risk-based |
url | https://www.mdpi.com/2079-9292/10/9/1107 |
work_keys_str_mv | AT slawomirnowaczewski improvingsecurityoffuturenetworksusingenhancedcustomeredgeswitchingandriskbasedanalysis AT wojciechmazurczyk improvingsecurityoffuturenetworksusingenhancedcustomeredgeswitchingandriskbasedanalysis |