PALANTIR: Zero-Trust Architecture for Managed Security Service Provider

dc.contributor.author
Compastié, Maxime
dc.contributor.author
Sisinni, Silvia
dc.contributor.author
Gurung, Supreshna
dc.contributor.author
Fernández, Carolina
dc.contributor.author
Jacquin, Ludovic
dc.contributor.author
Mlakar, Izidor
dc.contributor.author
Šafran, Valentino
dc.contributor.author
Lioy, Antonio
dc.contributor.author
Pedone, Ignazio
dc.date.accessioned
2023-02-27T07:46:48Z
dc.date.accessioned
2024-09-20T08:13:48Z
dc.date.available
2023-02-27T07:46:48Z
dc.date.available
2024-09-20T08:13:48Z
dc.date.issued
2023-01-13
dc.identifier.uri
http://hdl.handle.net/2072/531514
dc.description.abstract
The H2020 PALANTIR project aims at delivering a Security-as-a-Service solution to SMEs and microenterprises via the exploitation of containerised Network Functions. However, these functions are conceived by third-party developers and can also be deployed in untrustworthy virtualisation layers, depending on the subscribed delivery model. Therefore, they cannot be trusted and require a stringent monitoring to ensure their harmlessness, as well as adequate measures to remediate any nefarious activities. This paper justifies, details and evaluates a Zero-Trust architecture supporting PALANTIR’s solution. Specifically, PALANTIR periodically attests the service and infrastructure’s components for signs of compromise by implementing the Trusted Computing paradigm. Verification addresses the firmware, OS and software using UEFI measured boot and Linux Integrity Measurement Architecture, extended to support containerised application attestation. Mitigation actions are supervised by the Recovery Service and the Security Orchestrator based on OSM to, respectively, determine the adequate remediation actions from a recovery policy and enforce them down to the lower layers of the infrastructure through local authenticated enablers. We detail an implementation prototype serving a baseline for quantitative evaluation of our work.
eng
dc.format.extent
16 p.
cat
dc.language.iso
eng
cat
dc.publisher
CEUR Workshop Proceedings
cat
dc.relation.ispartof
CEUR Workshop proceedings Vol-3329
cat
dc.relation.ispartofseries
Proceedings of the 29th Computer & Electronics Security Application Rendezvous;
dc.rights
©️ 2022 Copyright for this paper by its authors. Use permitted under Creative Commons License Attribution 4.0 International (CC BY 4.0).
dc.source
RECERCAT (Dipòsit de la Recerca de Catalunya)
dc.subject.other
Cibersecurity
cat
dc.subject.other
Security
cat
dc.title
PALANTIR: Zero-Trust Architecture for Managed Security Service Provider
cat
dc.type
info:eu-repo/semantics/article
cat
dc.type
info:eu-repo/semantics/publishedVersion
cat
dc.subject.udc
621.3
cat
dc.embargo.terms
cap
cat
dc.rights.accessLevel
info:eu-repo/semantics/openAccess


Documents

Compastié et al. - PALANTIR Zero-Trust Architecture for Managed Secu.pdf

1.334Mb PDF

This item appears in the following Collection(s)