Title :
Towards SDN enabled network control delegation in clouds
Author :
Malik, Muhammad Salman ; Montanari, Mirko ; Huh, Jun Ho ; Bobba, Rakesh B. ; Campbell, Roy H.
Author_Institution :
Univ. of Illinois, Urbana, IL, USA
Abstract :
In today´s IaaS clouds users only get a logical view of the underlying network and have limited control. Delegating more control to end users would be beneficial but would also raise security concerns for the provider. Emerging Software Defined Networking (SDN) technologies have the capabilities to facilitate delegation of network controls and provide some level of network abstractions to end users. However, any delegation solution should try to balance the level of controls delegated to end users with the security constraints of the provider. In this paper, we propose a SDN-based framework to facilitate delegation of some network controls to end users, providing the means to monitor and configure their own slices of the underlying networks. Using two instantiations of this framework, we illustrate the tradeoffs between security and the level of network abstractions provided to end users.
Keywords :
cloud computing; computer network security; internetworking; IaaS cloud users; SDN enabled network control delegation; network abstraction level; security constraints; software defined networking technologies; Monitoring; Network topology; Protocols; Security; Switches; Topology; Cloud; Control Delegation; SDN;
Conference_Titel :
Dependable Systems and Networks (DSN), 2013 43rd Annual IEEE/IFIP International Conference on
Conference_Location :
Budapest
Print_ISBN :
978-1-4673-6471-3
DOI :
10.1109/DSN.2013.6575320