Symposium sur la sécurité des technologies de l'information et des communications

Conférence francophone sur le thème de la sécurité de l'information.
Elle a eu lieu à Rennes du 2 au 4 juin 2021.

The security of SD-WAN: the Cisco caseJulien Legras

Date : 04 juin 2021 à 14:15 — 30 min.

SD-WAN solutions allow companies to simplify their WAN management by interconnecting their networks seamlessly. This technology has become quite popular, but it also comes with some risks. Indeed, SD-WAN is a critical component that manages a lot of sensitive operations: software updates, network routing and firewalling synchronization, etc.

This presentation aims at presenting a security analysis of the Cisco solution, which was affected by vulnerabilities allowing taking over all the subsequent devices.

Mitigations and recommendations will be presented to improve the security for customers already using this solution. It will also provide some pointers for further research on the solution.