Content area

Abstract

With the continuous advancement of virtualization technology and the widespread adoption of 5G networks, the application of the Network Function Virtualization (NFV) architecture has become increasingly popular and prevalent. While the NFV architecture brings a lot of advantages, it also introduces security challenges, including the effective and efficient verification of the integrity of deployed Virtual Network Functions (VNFs) and ensuring the secure operation of VNFs. To address the challenge of efficiently conducting virtual remote attestation for VNFs and establishing trust in virtualized environments like NFV architecture, we propose TVRAVNF, which is a highly efficient and low-cost TEE-based virtual remote attestation scheme for VNFs. The scheme we proposed ensures the security and effectiveness of the virtual remote attestation process by leveraging TEE. Furthermore, we introduces a novel local attestation mechanism, which not only reduces the overall overhead of the virtual remote attestation process but also shortens the attestation interval to mitigate Time-Of-Check-Time-Of-Use attacks, thereby enhancing overall security. We conduct experiments to validate the overhead of the TVRAVNF scheme and compare its performance with that of a typical remote attestation process within a maximum unattested time interval. The experimental results demonstrate that, by employing the local attestation mechanism, our solution achieves nearly an 80% significant performance improvement with a relatively small time overhead for small to medium-sized files. This further substantiates the significant advantages of our approach in both security and efficiency.

Details

Title
TVRAVNF: an efficient low-cost TEE-based virtual remote attestation scheme for virtual network functions
Author
Yuan, Jie 1 ; Xu, Rui 1 ; Wei, Xinghai 1 ; Miao, Keji 1 ; Liu, Dongxiao 1   VIAFID ORCID Logo 

 Beijing University of Posts and Telecommunication, Key Laboratory of Trusted Distributed Computing and Services, Beijing, China (GRID:grid.31880.32) (ISNI:0000 0000 8780 1230) 
Publication title
Cybersecurity; Singapore
Volume
7
Issue
1
Pages
39
Publication year
2024
Publication date
Dec 2024
Publisher
Springer Nature B.V.
Place of publication
Singapore
Country of publication
Netherlands
Publication subject
e-ISSN
25233246
Source type
Scholarly Journal
Language of publication
English
Document type
Journal Article
Publication history
 
 
Online publication date
2024-08-04
Milestone dates
2024-03-21 (Registration); 2023-12-01 (Received); 2024-03-19 (Accepted)
Publication history
 
 
   First posting date
04 Aug 2024
ProQuest document ID
3087614133
Document URL
https://www.proquest.com/scholarly-journals/tvravnf-efficient-low-cost-tee-based-virtual/docview/3087614133/se-2?accountid=208611
Copyright
© The Author(s) 2024. This work is published under http://creativecommons.org/licenses/by/4.0/ (the “License”). Notwithstanding the ProQuest Terms and Conditions, you may use this content in accordance with the terms of the License.
Last updated
2024-08-19