arXivDaily arXiv每日学术速递 周一至周五更新
arXiv周末暂无论文更新,休息一下吧,周末愉快~~

OVS 与 PQ-TLS:探索软件定义网络南向接口的后量子 TLS

OVS Meets PQ-TLS: Exploring Post-Quantum TLS for SDN's Southbound API

Majd Latah, Kubra Kalkan

arXiv 2608.16582首次发表:更新:

AI 中文总结

该研究针对 SDN 南向 API 传统 TLS 依赖 legacy 密码算法的问题,提出 PQ-TLS 应用的概念验证,对比纯/混合 PQ-TLS 与传统 TLS 的延迟、CPU 利用率及不同后量子密码方案性能,为 SDN 南向接口后量子安全提供参考。

AI 中文摘要

软件定义网络(SDN)是一种新型网络范式,可实现网络可编程性及对网络设备的集中控制。南向应用编程接口(API)用于控制和管理底层数据平面设备。现有南向 API 依赖采用 RSA、ECDSA 等传统密码算法的 TLS。本文探索支持后量子 TLS(PQ-TLS)的南向 API 性能,提出在 SDN 南向 API 中使用 PQ-TLS 的概念验证,研究纯 PQ-TLS 与混合 PQ-TLS 模式在不同安全等级下的性能,从延迟和 CPU 利用率两方面与传统 TLS 对比,还比较了不同后量子签名及密钥建立方案的性能。

英文摘要

Software-defined networking (SDN) is a novel networking paradigm that enables network programmability and centralized control for network devices. The southbound application programming interface (API) is used to control and manage the underlying data plane devices. The existing southbound API relies on TLS with legacy cryptographic algorithms such as RSA and ECDSA. In this paper, we explore the performance of the southbound API with postquantum TLS (PQ-TLS) support. We present a proof-of-concept of using PQ-TLS in SDN's southbound API. We study the performance of pure and hybrid PQ-TLS modes across different security levels and compare them with legacy TLS in terms of latency and CPU utilization. We also compare the performance of different post-quantum signature and key establishment schemes.

论文原文

arXiv 摘要页 · PDF 原文 · HTML 原文

↑