A user mode implementation of filtering rule management plane on virtualized networking environment
スポンサーリンク
概要
- 論文の詳細を見る
With the rapid advance of virtualization and big data technology which realizes SDN (Software Defined Network) and Cloud computing, today's computing environment becomes more flexile, diversified and complex. In this paper we present a user mode support for centralized filtering rule management base. Proposed system enables us to handle fine grained traffic engineering functionality for diversified environment of Cloud and SDN. Our architecture adopts NoSQL data store for handling a large scale of filtering rules. By leveraging data store for centralized access control of instances on virtualized environment, we can provide alternative access control framework for reducing the burden of managing complicated and dynamic filtering policy on instances (virtual machine) on virtualized networking environment. In experiment, we have prototyped a lightweight management plane for IP filtering. Access filtering rules including target IP address, prefix and gateway is represented as radix tree. It is shown that proposed method can achieve reasonable utilization in filtering IP packets.
- 2014-06-26
著者
-
Ruo Ando
Network Security Institute, National Institute of Information and Communications Technology