隨著SDN發展及企業級部署之需求日益增加,SDN解決方案的安全控管能力成為了不可或缺 的要件,而可攜式裝置、筆記型電腦與BYOD(Bring your own device)風潮也使得以IP位址或者網 路卡MAC資訊等靜態資訊做權限控管的方式漸趨不敷使用。本研究實作了一個使用者驗證模 組,透過802.1X協定,實現SDN網路之使用者驗證功能,提供未來網管系統使用者規劃更多策略、 差異化需求的可能性,並提出實際上可用的情境做為範例。
Due to the fast developing of SDN technology and the increasing demand of enterprise-level deployment, the security management is an indispensable component in a SDN enterprise solution. Also, using static information such as IP or MAC address of network card as authentication target is also no longer sufficient according to the current portable devices, notebooks in BYOD trend. In this research, we implemented a core module of SDN Controller to cope with user authentication, which based on 802.1X protocol. With our module, network manage system user can acquire more possibility of strategic planning and demands separation. Last but not least, we made up several scenarios to demonstrate the functionality and feasibility of our system.