Title :
A dynamic security traversal mechanism for providing deterministic delay guarantee in SDN
Author :
Yu-Jia Chen ; Feng-Yi Lin ; Li-Chun Wang ; Bao-Shuh Lin
Author_Institution :
Dept. of Electr. & Comput. Eng., Nat. Chiao Tung Univ., Hsinchu, Taiwan
Abstract :
For security concerns, a security traversal service can route data flows through a sequences of security devices (middleboxes). In this paper, we identify the problem of delay guarantee in security traversal and propose a scheme to dynamically change the security traversal path. To provide deterministic delay guarantee with minimum virtual machine (VM) and transmission cost, we model this security traversal path determination as a constrained shortest path problem (CSP) and propose an optimal security traversal with middlebox addition (OSTMA) mechanism. Besides, we implement the proposed OSTMA mechanism in an OpenFlow network by designing a centralized security traversal controller to dynamically monitor the network condition information and reconfigure the security traversal path. Our experimental results show that the proposed dynamic security traversal scheme can still achieve delay requirements for network topology changes and burst traffic.
Keywords :
access protocols; computer centres; computer network security; delays; telecommunication network topology; telecommunication traffic; virtual machines; virtualisation; CSP; OSTMA mechanism; SDN; burst traffic; constrained shortest path problem; data flows; deterministic delay guarantee; minimum virtual machine; network topology; openflow network; optimal security traversal with middlebox addition; security devices; security traversal mechanism; security traversal path determination; transmission cost; Control systems; Delays; Engines; Middleboxes; Monitoring; Security; Software; Cloud datacenter; OpenFlow networks; Security traversal;
Conference_Titel :
World of Wireless, Mobile and Multimedia Networks (WoWMoM), 2014 IEEE 15th International Symposium on a
Conference_Location :
Sydney, NSW
DOI :
10.1109/WoWMoM.2014.6918983