• DocumentCode
    266734
  • Title

    A dynamic security traversal mechanism for providing deterministic delay guarantee in SDN

  • Author

    Yu-Jia Chen ; Feng-Yi Lin ; Li-Chun Wang ; Bao-Shuh Lin

  • Author_Institution
    Dept. of Electr. & Comput. Eng., Nat. Chiao Tung Univ., Hsinchu, Taiwan
  • fYear
    2014
  • fDate
    19-19 June 2014
  • Firstpage
    1
  • Lastpage
    6
  • Abstract
    For security concerns, a security traversal service can route data flows through a sequences of security devices (middleboxes). In this paper, we identify the problem of delay guarantee in security traversal and propose a scheme to dynamically change the security traversal path. To provide deterministic delay guarantee with minimum virtual machine (VM) and transmission cost, we model this security traversal path determination as a constrained shortest path problem (CSP) and propose an optimal security traversal with middlebox addition (OSTMA) mechanism. Besides, we implement the proposed OSTMA mechanism in an OpenFlow network by designing a centralized security traversal controller to dynamically monitor the network condition information and reconfigure the security traversal path. Our experimental results show that the proposed dynamic security traversal scheme can still achieve delay requirements for network topology changes and burst traffic.
  • Keywords
    access protocols; computer centres; computer network security; delays; telecommunication network topology; telecommunication traffic; virtual machines; virtualisation; CSP; OSTMA mechanism; SDN; burst traffic; constrained shortest path problem; data flows; deterministic delay guarantee; minimum virtual machine; network topology; openflow network; optimal security traversal with middlebox addition; security devices; security traversal mechanism; security traversal path determination; transmission cost; Control systems; Delays; Engines; Middleboxes; Monitoring; Security; Software; Cloud datacenter; OpenFlow networks; Security traversal;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    World of Wireless, Mobile and Multimedia Networks (WoWMoM), 2014 IEEE 15th International Symposium on a
  • Conference_Location
    Sydney, NSW
  • Type

    conf

  • DOI
    10.1109/WoWMoM.2014.6918983
  • Filename
    6918983