Abstract:Aiming at the security protection in virtual environments such as cloud computing, an automatic scheduling deployment framework of security service chain based on SDN/NFV is proposed in this paper. The ABAC strategy model is extended to describe the security requirements of users and priorities are used to solve the policy conflicts to arrange virtualized security appliance. The load of each virtualized security appliance instance and the real-time link transmission delay are quantified to dispatch network traffic. Finally, the flow table generated by SDN controller is sent to the network to complete traffic redirection and implement the process of automatically building the security service chain according to the security requirements. The entire framework is implemented in the experimental environment to achieve the automatic scheduling deployment based on floodlight, virtualized security appliance, and it has obtained anticipatory effects.