{"title":"Authentication and Authorization in FELIX","authors":"U. Toseef, K. Pentikousis","doi":"10.1109/UCC.2015.98","DOIUrl":null,"url":null,"abstract":"FELIX, the EU-Japan jointly-funded project, establishes a software defined networking (SDN) experimental facility which spans two continents and several administrative domains via dynamic transit network connections. The FELIX architectural blueprint provides an excellent example where key topics such as policy-based software-defined infrastructure instantiation is supported by resource orchestrators which manage multi-domain distributed compute and network resources including on-demand provisioning of transit network resources. In this context, FELIX implements a modern approach for authentication and authorization in SDN experimental facilities which enables fine-grained control and avoids single points of failure. This paper details the underlying mechanisms for user and transit network resource authentication and authorization in FELIX.","PeriodicalId":381279,"journal":{"name":"2015 IEEE/ACM 8th International Conference on Utility and Cloud Computing (UCC)","volume":"200 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2015-12-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2015 IEEE/ACM 8th International Conference on Utility and Cloud Computing (UCC)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/UCC.2015.98","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0
Abstract
FELIX, the EU-Japan jointly-funded project, establishes a software defined networking (SDN) experimental facility which spans two continents and several administrative domains via dynamic transit network connections. The FELIX architectural blueprint provides an excellent example where key topics such as policy-based software-defined infrastructure instantiation is supported by resource orchestrators which manage multi-domain distributed compute and network resources including on-demand provisioning of transit network resources. In this context, FELIX implements a modern approach for authentication and authorization in SDN experimental facilities which enables fine-grained control and avoids single points of failure. This paper details the underlying mechanisms for user and transit network resource authentication and authorization in FELIX.