Login | Register

Building Cross-Cluster Security Models for Edge-Core Environments Involving Multiple Kubernetes Clusters

Title:

Building Cross-Cluster Security Models for Edge-Core Environments Involving Multiple Kubernetes Clusters

GholipourChoubeh, Mahmood (2023) Building Cross-Cluster Security Models for Edge-Core Environments Involving Multiple Kubernetes Clusters. Masters thesis, Concordia University.

[thumbnail of GholipourChoubeh_MA_F2023.pdf]
Preview
Text (application/pdf)
GholipourChoubeh_MA_F2023.pdf - Accepted Version
Available under License Spectrum Terms of Access.
3MB

Abstract

With the emergence of 5G networks and their large scale applications such as IoT and autonomous vehicles, telecom operators are increasingly offloading the computation closer to customers (i.e., on the edge). Such edge-core environments usually involve multiple Kubernetes clusters potentially owned by different providers. Confidentiality and privacy concerns could prevent those providers from sharing data freely with each other, which makes it challenging to perform common security tasks such as security verification and attack/anomaly detection across different clusters. In this work, we propose CCSM, a solution for building cross-cluster security models to enable various security analyses, while preserving confidentiality and privacy for each cluster. We design a six-step methodology to model both the cross-cluster communication and cross-cluster event dependency, and we apply those models to different security use cases. We implement our solution based on a 5G edge-core environment that involves multiple Kubernetes clusters, and our experi�mental results demonstrate its efficiency (e.g., less than 8 s of processing time for a model with 3,600 edges and nodes) and accuracy (e.g., more than 96% for cross-cluster event prediction)

Divisions:Concordia University > Gina Cody School of Engineering and Computer Science > Concordia Institute for Information Systems Engineering
Item Type:Thesis (Masters)
Authors:GholipourChoubeh, Mahmood
Institution:Concordia University
Degree Name:M.A. Sc.
Program:Information Systems Security
Date:8 August 2023
Thesis Supervisor(s):Wang, Lingyu and Majumdar, Suryadipta
ID Code:992628
Deposited By: Mahmood GholipourChoubeh
Deposited On:16 Nov 2023 19:37
Last Modified:16 Nov 2023 19:37
All items in Spectrum are protected by copyright, with all rights reserved. The use of items is governed by Spectrum's terms of access.

Repository Staff Only: item control page

Downloads per month over past year

Research related to the current document (at the CORE website)
- Research related to the current document (at the CORE website)
Back to top Back to top