DocumentCode
266734
Title
A dynamic security traversal mechanism for providing deterministic delay guarantee in SDN
Author
Yu-Jia Chen ; Feng-Yi Lin ; Li-Chun Wang ; Bao-Shuh Lin
Author_Institution
Dept. of Electr. & Comput. Eng., Nat. Chiao Tung Univ., Hsinchu, Taiwan
fYear
2014
fDate
19-19 June 2014
Firstpage
1
Lastpage
6
Abstract
For security concerns, a security traversal service can route data flows through a sequences of security devices (middleboxes). In this paper, we identify the problem of delay guarantee in security traversal and propose a scheme to dynamically change the security traversal path. To provide deterministic delay guarantee with minimum virtual machine (VM) and transmission cost, we model this security traversal path determination as a constrained shortest path problem (CSP) and propose an optimal security traversal with middlebox addition (OSTMA) mechanism. Besides, we implement the proposed OSTMA mechanism in an OpenFlow network by designing a centralized security traversal controller to dynamically monitor the network condition information and reconfigure the security traversal path. Our experimental results show that the proposed dynamic security traversal scheme can still achieve delay requirements for network topology changes and burst traffic.
Keywords
access protocols; computer centres; computer network security; delays; telecommunication network topology; telecommunication traffic; virtual machines; virtualisation; CSP; OSTMA mechanism; SDN; burst traffic; constrained shortest path problem; data flows; deterministic delay guarantee; minimum virtual machine; network topology; openflow network; optimal security traversal with middlebox addition; security devices; security traversal mechanism; security traversal path determination; transmission cost; Control systems; Delays; Engines; Middleboxes; Monitoring; Security; Software; Cloud datacenter; OpenFlow networks; Security traversal;
fLanguage
English
Publisher
ieee
Conference_Titel
World of Wireless, Mobile and Multimedia Networks (WoWMoM), 2014 IEEE 15th International Symposium on a
Conference_Location
Sydney, NSW
Type
conf
DOI
10.1109/WoWMoM.2014.6918983
Filename
6918983
Link To Document