Satti, Vijay (2019) Secure Configuration and Management of Linux Systems using a Network Service Orchestrator. Masters thesis, Concordia University.
Preview |
Text (application/pdf)
756kBSatti_MASc_2019.pdf - Accepted Version Available under License Spectrum Terms of Access. |
Abstract
Manual management of the configuration of network devices and computing devices (hosts) is an error-prone task. Centralized automation of these tasks can lower the costs of management, but can also introduce unknown or unanticipated security risks. Misconfiguration (deliberate (by outsiders) or inadvertent (by insiders)) can expose a system to significant risks.
Centralized network management has seen significant progress in recent years, resulting in model-driven approaches that are clearly superior to previous "craft" methods. Host management has seen less development. The tools available have developed in separate task-specific ways.
This thesis explores two aspects of the configuration management problem for hosts:
(1) implementing host management using the model-driven (network) management tools;
(2) establishing the relative security of traditional methods and the above proposal for model driven host management.
It is shown that the model-driven approach is feasible, and the security of the model driven approach is significantly higher than that of existing approaches.
Divisions: | Concordia University > Gina Cody School of Engineering and Computer Science > Concordia Institute for Information Systems Engineering |
---|---|
Item Type: | Thesis (Masters) |
Authors: | Satti, Vijay |
Institution: | Concordia University |
Degree Name: | M.A. Sc. |
Program: | Information Systems Security |
Date: | May 2019 |
Thesis Supervisor(s): | Atwood, J. W. |
Keywords: | Secure Configuration Management, NETCONF, YANG, Host Management, Network Management, Network Service Orchestrator (NSO) |
ID Code: | 985519 |
Deposited By: | Vijay Satti |
Deposited On: | 05 Feb 2020 14:24 |
Last Modified: | 05 Feb 2020 14:24 |
Repository Staff Only: item control page