Skip to main content

An Implementation of Firewall as a Service for OpenStack Virtualization Systems

  • Conference paper
  • First Online:
Intelligent Systems and Networks (ICISN 2021)

Part of the book series: Lecture Notes in Networks and Systems ((LNNS,volume 243))

Included in the following conference series:

Abstract

In this paper, we propose and implement a firewalling service for cloud system using OpenStack. The service, called FWaaS - Firewall as a Service, is offloaded from and loosely coupled with Openstack cloud system. It can be utilised to provision firewall functions and it supports a rich set of packet filtering capabilities, from link layer up to application layer. The service is lightweight but shows that it could prevent efficiently threats from outside of the networks with low level of resource consumption.

This is a preview of subscription content, log in via an institution to check access.

Access this chapter

Chapter
USD 29.95
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
eBook
USD 139.00
Price excludes VAT (USA)
  • Available as EPUB and PDF
  • Read on any device
  • Instant download
  • Own it forever
Softcover Book
USD 179.99
Price excludes VAT (USA)
  • Compact, lightweight edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info
Hardcover Book
USD 219.99
Price excludes VAT (USA)
  • Durable hardcover edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Purchases are for personal use only

Institutional subscriptions

Similar content being viewed by others

References

  1. OpenStack: OpenStack Docs: Firewall-as-a-Service (FWaaS), 04 March 2020. https://docs.openstack.org/neutron/pike/admin/fwaas.html. Accessed 05 Mar 2020

  2. OpenStack: neutron-fwaas/README.rst, 01 June 2013. https://github.com/openstack/neutron-fwaas/blob/master/README.rst. Accessed 05 Mar 2020

  3. OpenStack: OpenStack Docs: Firewall as a Service API 2.0, 10 April 2016. https://specs.openstack.org/openstack/neutron-specs/specs/newton/fwaas-api-2.0.html. Accessed 05 Mar 2020

  4. OpenStack: OpenStack Docs: Manage project security, 14 February 2020. https://docs.openstack.org/nova/rocky/admin/security-groups.html. Accessed 06 Mar 2020

  5. OpenStack: OpenStack Docs: Configure access and security for instances, 23 August 2019. https://docs.openstack.org/ocata/user-guide/cli-nova-configure-access-security-for-instances.html. Accessed 06 Mar 2020

  6. Santoso, B.I., Idrus, M.R.S., Gunawan, I.P.: Designing network intrusion and detection system using signature-based method for protecting OpenStack private cloud. Informatics Department, Bakrie University Jakarta, Indonesia 12920 (2016)

    Google Scholar 

  7. Xu, C., Zhang, R., Xie, M., Yang, L.: Network intrusion detection system as a service. In: 2019 IEEE 27th International Conference on Network Protocols (ICNP), pp. 1–2 (2019)

    Google Scholar 

  8. Rash, M.: Linux Firewalls: Attack Detection and Response with iptables, psad, and fwsnort. No Starch Press, San Francisco (2007)

    Google Scholar 

  9. Schubert, D., Jaeger, B., Helm, M.: Network emulation using Linux network namespaces. Network 57 (2019)

    Google Scholar 

  10. Aggarwal, S.: Modern web-development using ReactJS. Int. J. Recent Res. Aspects 5, 2349–7688 (2018)

    Google Scholar 

Download references

Author information

Authors and Affiliations

Authors

Corresponding author

Correspondence to Xuan Tung Hoang .

Editor information

Editors and Affiliations

Rights and permissions

Reprints and permissions

Copyright information

© 2021 The Author(s), under exclusive license to Springer Nature Singapore Pte Ltd.

About this paper

Check for updates. Verify currency and authenticity via CrossMark

Cite this paper

Hoang, X.T., Bui, N.D. (2021). An Implementation of Firewall as a Service for OpenStack Virtualization Systems. In: Tran, DT., Jeon, G., Nguyen, T.D.L., Lu, J., Xuan, TD. (eds) Intelligent Systems and Networks . ICISN 2021. Lecture Notes in Networks and Systems, vol 243. Springer, Singapore. https://doi.org/10.1007/978-981-16-2094-2_12

Download citation

Publish with us

Policies and ethics