• DocumentCode
    3719150
  • Title

    An analytical model to achieve elasticity for cloud-based firewalls

  • Author

    Khaled Salah

  • Author_Institution
    Electrical and Computer Engineering Department, Khalifa University, UAE
  • fYear
    2015
  • Firstpage
    173
  • Lastpage
    176
  • Abstract
    Elasticity for cloud-based services and applications has been studied in the literature to some extent. However, the literature is lacking thorough study on elasticity for cloud-based firewalls. This paper proposes an architectural framework for an elastic virtual firewall service to be deployed at cloud datacenters. The paper presents an analytical model based on Markov chain and queueing theory that can be used to achieve elasticity for cloud-based firewalls. In particular, the model captures the behavior of a cloud-based firewall service comprising a load balancer and a variable number of virtual firewalls. From the analytical model, we then derive closed-form formulas to estimate the minimal number of virtual firewalls required to satisfy a given SLA response time. The model takes as input key system input parameters that include workload, processing capacity of load balancer and virtual machines, as well as firewall rulebase interrogation.
  • Keywords
    "Firewalls (computing)","Cloud computing","Analytical models","Time factors","Elasticity","Mathematical model","Numerical models"
  • Publisher
    ieee
  • Conference_Titel
    Local Computer Networks (LCN), 2015 IEEE 40th Conference on
  • Type

    conf

  • DOI
    10.1109/LCN.2015.7366299
  • Filename
    7366299