Software-defined hardware-assisted isolation for trusted next-generation IoT systems.

Filippos-George Kolimbianakis,George Kornaros

ACM Symposium on Applied Computing (SAC)(2022)

引用 0|浏览0
暂无评分
摘要
To mitigate(1) cybersecurity threats at the edge of the network in Internet-of Things (IoT) domains, recently, the use of networking technologies such as SDN-NFV has been proposed. Intelligent and dynamic security policy enforcement methodologies become increasingly important to bring more cautious in network communications for IoT services and applications which naturally embed traditional security and privacy risks, such as service hijacking, DDoS attack, denial service, IP spoofing, man-in-themiddle. To extend such frameworks, in this work we present a software-defined protection-oriented hardware technique to support physical isolation of memory compartments and of hardware devices such as DMAs and accelerators inside modern Systems-onChip (SoCs), not only at the edge but also at the IoT high-end accelerator-rich devices. In addition to network functions commonly supported in software-defined environments, we describe innovative lightweight software-controlled hardware mechanisms for enhancing IoT ecosystem security by design.
更多
查看译文
关键词
Software-defined trusted interconnect, hardware isolated memory compartments, lightweight hardware protection, secure NFV, trusted IoT hardware functions
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要