Unleashing Dynamic Pipeline Reconfiguration of P4 Switches for Efficient Network Monitoring

被引:5
作者
Al Sadi, Amir [1 ]
Savi, Marco [2 ]
Melis, Andrea [1 ]
Prandini, Marco [1 ]
Callegati, Franco [1 ]
机构
[1] Univ Bologna, Dept Comp Sci & Engn, I-40126 Bologna, Italy
[2] Univ Milano Bicocca, Dept Informat Syst & Commun, I-20126 Milan, Italy
来源
IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT | 2024年 / 21卷 / 03期
关键词
Programmable data planes; P4; network monitoring; pipeline reconfiguration; DDoS detection; SDN; SUPPORT; SKETCH;
D O I
10.1109/TNSM.2024.3377538
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
As it is happening in many fields that need efficient and effective classification of data, Machine Learning (ML) is becoming increasingly popular in network management and monitoring. In general we can say that ML algorithms are complex, therefore better suited for execution in the centralized control plane of modern networks, but are also heavily reliant on data, that are necessarily collected in the data plane. The inevitable consequence is that may arise the need to transfer lots of data from the data plane to the control plane, with the risk to cause congestion on the control communication channel. This may turn into a major drawback, since congestion on the control channel may have a significant impact on network operations. Therefore it is of paramount importance to design systems capable of minimizing the interaction between data and control planes while ensuring good monitoring performance. The most recent generation of data plane programmable switches supporting the P4 language can help mitigate this problem by preprocessing traffic data at line rate. In this manuscript we follow this approach and propose P4RTHENON: an architecture to distill in the data plane the relevant information to be mirrored to the control plane, where complex analysis can be performed. P4RTHENON leverages the P4-native support for runtime data plane pipeline reconfiguration to minimize the interaction between data and control planes while ensuring good monitoring performance. We tested our scheme on the volumetric DDoS detection use case: P4RTHENON reduces the volume of exchanged data by almost 75% compared to a pure control-plane-based solution, guarantees low memory consumption in the data plane, and does not degrade the overall DDoS detection capabilities.
引用
收藏
页码:3482 / 3497
页数:16
相关论文
共 62 条
  • [1] A. W. Group, 2016, View on 5G architecture
  • [2] Real-time Pipeline Reconfiguration of P4 Programmable Switches to Efficiently Detect and Mitigate DDoS Attacks
    Al Sadi, Amir
    Savi, Marco
    Berardi, Davide
    Melis, Andrea
    Prandini, Marco
    Callegati, Franco
    [J]. 2023 26TH CONFERENCE ON INNOVATION IN CLOUDS, INTERNET AND NETWORKS AND WORKSHOPS, ICIN, 2023,
  • [3] A survey on security applications of P4 programmable switches and a STRIDE-based vulnerability assessment
    AlSabeh, Ali
    Khoury, Joseph
    Kfoury, Elie
    Crichigno, Jorge
    Bou-Harb, Elias
    [J]. COMPUTER NETWORKS, 2022, 207
  • [4] [Anonymous], CICIDS2017 Dataset, Dataset
  • [5] [Anonymous], 2020, P4Runtime specification
  • [6] [Anonymous], 2007, DDoS 2007 attack, Dataset
  • [7] [Anonymous], 2015, OpenFlow Switch Specification
  • [8] FlowLens: Enabling Efficient Flow Classification for ML-based Network Security Applications
    Barradas, Diogo
    Santos, Nuno
    Rodrigues, Luis
    Signorello, Salvatore
    Ramos, Fernando M., V
    Madeira, Andre
    [J]. 28TH ANNUAL NETWORK AND DISTRIBUTED SYSTEM SECURITY SYMPOSIUM (NDSS 2021), 2021,
  • [9] Ben-Basat R, 2016, IEEE INFOCOM SER
  • [10] Efficient Measurement on Programmable Switches Using Probabilistic Recirculation
    Ben-Basat, Ran
    Chen, Xiaoqi
    Einziger, Gil
    Rottenstreich, Ori
    [J]. 2018 IEEE 26TH INTERNATIONAL CONFERENCE ON NETWORK PROTOCOLS (ICNP), 2018, : 313 - 323