Table 5 Comparison between previous work and this work.

From: A data plane security model of SR-BE/TE based on zero-trust architecture

 

SbSR (SDP based SR)30

ZbSR (ZTA based SR)

Problem oriented

The terminal device of the SR network data plane

The switching device of the SR network data plane

Modeling

The migration model of the mature SDP model is carried out

Based on the concept of ZTA, a new ZTA model is designed by adding security components and reassembling the original functional components

Assessment

Port scanning; Traffic monitoring; DoS attack; Topology detection based on label detection; Routing loop attack based on directional label; Performance overhead

Control plane message tampering; Data plane loop attack; Identity deception; Back door utilization; DOS attack; Performance overhead