CASP+ Definitions: SDN Overlay
In the context of cybersecurity, an SDN overlay refers to an approach to network security that creates a virtual overlay network that runs on top of the physical network. The SDN overlay network is designed to enable more flexible and scalable network security by allowing administrators to easily manage traffic flows, apply security policies, and deploy security services to protect the overlay network.
In this approach, the underlying physical network provides connectivity, while the overlay network abstracts the physical network topology and provides additional security features such as traffic encryption, firewalling, and intrusion detection and prevention. By separating the control and data planes of the network, an SDN overlay provides greater visibility, control, and security to the network administrator.
An SDN overlay is typically used in cloud environments, where security policies need to be enforced across multiple tenants, or in situations where there is a need to provide secure connectivity between geographically dispersed sites.