引用本文
  • 任腾,张顺亮,刘银龙.面向 6G 的软件定义可重构智能网络安全综述:现状、机遇与挑战[J].信息安全学报,已采用    [点击复制]
  • renteng,zhangshunliang,liuyinlong.A Comprehensive Survey on Software-Defined Reconfigurable Intelligent Cybersecurity for 6G: State-of-the-Art, Opportunities and Challenges[J].Journal of Cyber Security,Accept   [点击复制]
【打印本页】 【下载PDF全文】 查看/发表评论下载PDF阅读器关闭

过刊浏览    高级检索

本文已被:浏览 117次   下载 0  
面向 6G 的软件定义可重构智能网络安全综述:现状、机遇与挑战
任腾, 张顺亮, 刘银龙
0
(中国科学院信息工程研究所)
摘要:
复杂多样的新兴业务类型和应用场景对6G网络安全防护提出了多样化、定制化需求。6G系统在运行过程中面临着不断变化的安全威胁,这要求网络安全防护机制能够动态灵活部署以有效防御新的风险并提升资源利用效率。SDN、NFV和SFC技术的出现极大地促进了6G网络的软件化、虚拟化和可重构性的发展。人工智能技术的快速发展推动了网络安全防护体系的智能化。然而,新技术、新架构和新范式也为6G网络安全带来了新的挑战和风险。一方面,软硬件解耦、网络功能模块化以及服务功能链的动态重构引入了新的安全风险。另一方面,智能化的控制平面、虚拟化安全功能的编排与管理为构建可重构的动态安全防御体系提供了技术支撑。现有研究工作尚缺乏对结合人工智能的软件定义可重构网络安全的全面分析。本文首先介绍了软件定义可重构网络的相关技术概念及其特点。随后,系统地分类与总结了SDN、NFV和SFC各自面临的安全风险及相应的解决方案,并全面深入讨论了结合机器学习的智能软件定义可重构网络安全防护方案的最新研究工作。在此基础上,提出了一个结合SDN、NFV和SFC及深度强化学习的新型智能安全编排框架,并详细描述了其工作机制。最后,指出了未来6G网络安全领域中的开放性问题和研究方向。
关键词:  6G  网络安全  软件定义网络  网络功能虚拟化  服务功能链  智能化安全防护  可重构网络  深度学习
DOI:
投稿时间:2024-08-29修订日期:2025-02-20
基金项目:
A Comprehensive Survey on Software-Defined Reconfigurable Intelligent Cybersecurity for 6G: State-of-the-Art, Opportunities and Challenges
renteng, zhangshunliang, liuyinlong
(Institute of Information Engineering,Chinese Academy of Sciences)
Abstract:
The diverse and evolving business types and application scenarios in 6G networks demand customized security solutions. As 6G systems face ever-changing threats, security mechanisms must be dynamically and flexibly deployed to defend against new risks and enhance resource efficiency. The emergence of SDN, NFV and SFC technologies has greatly promoted the development of software, virtualization and reconfiguration of 6G networks. The rapid development of artificial intelligence technology has promoted the intelligence of network security protection system. However, new technologies, new architectures, and new paradigms also bring new challenges and risks to 6G network security. On the one hand, the decoupling of software and hardware, the modularization of network functions and the dynamic reconfiguration of service function chains introduce new security risks. On the other hand, the intelligent control plane and the orchestration and management of virtualization security functions provide technical support for the construction of reconfigurable dynamic security defense system. The existing research work lacks a comprehensive analysis of the security of software-defined reconfigurable network combined with artificial intelligence. In this paper, we first introduce the related technical concepts and characteristics of software defined reconfigurable network. Then, the security risks faced by SDN, NFV and SFC and the corresponding solutions are systematically classified and summarized, and the latest research work on the security protection scheme of intelligent software-defined reconfigurable network combined with machine learning is comprehensively and deeply discussed. On this basis, a new intelligent security orchestration framework combining SDN, NFV, SFC and deep reinforcement learning is proposed, and its working mechanism is described in detail. Finally, the open problems and research directions in the field of 6G network security in the future were pointed out.
Key words:  6G  Network Security  Software-Defined Networks  Network Function Virtualization  Service Function Chaining  Intelligent Security Protection  Reconfigurable Network  Deep Learning