Forensic strategies and methods in advanced software-defined networks
2024 (English)In: Lecture Notes in Informatics (LNI), Proceedings - Series of the Gesellschaft fur Informatik (GI), Gesellschaft fur Informatik (GI) , 2024, Vol. 352, p. 331-341Conference paper, Published paper (Refereed)
Abstract [en]
When it comes to network forensics in modern cloud-edge-systems, network forensics has become an urgent yet challenging field of work. Especially forensics of software-defined networks (SDN) poses some unique challenges that need to be addressed. This article hence addresses the methodological and strategic challenges of network forensics in modern complex software-defined networks using the ZeroTier Network as a practical example. In this context, detailed strategies and methods for clarification and preservation of evidence in SDN after common IT security incidents are derived from existing best practices in digital forensics. In addition, typical technical and legal issues and obstacles for forensic work in SDN are addressed in connection with IT security measures, and possible solution approaches are presented. Using an advanced SDN example, characteristic workflows of network forensics in SDN are discussed. The result of the work is ultimately a presentation of adapted and individually adaptable strategies and methods for applying targeted digital forensics in advanced SDN.
Place, publisher, year, edition, pages
Gesellschaft fur Informatik (GI) , 2024. Vol. 352, p. 331-341
Keywords [en]
Computer forensics, Electronic crime countermeasures, Forensic engineering, Advanced softwares, Complex software, IT security, Methodology, Security incident, Software-defined networkings, Software-defined networks, Strategic challenges, Strategy, Systems networks, Social software
National Category
Computer Sciences
Research subject
Computer Science
Identifiers
URN: urn:nbn:se:kau:diva-103358DOI: 10.18420/inf2024_23Scopus ID: 2-s2.0-85216081176OAI: oai:DiVA.org:kau-103358DiVA, id: diva2:1939849
Conference
Lock-in or log out? Wie digitale Souveranitat gelingt, INFORMATIK, Wiesbaden, Germany, September 24-26, 2024.
2025-02-242025-02-242025-02-24Bibliographically approved