Software-defined networking with services oriented by domain names

被引:2
|
作者
Silva, Lucas A. M. [1 ]
Vieira, Marcos A. M. [1 ]
Guedes, Dorgival [1 ]
Ferreira, Ronaldo A. [2 ]
机构
[1] Univ Fed Minas Gerais, Dept Ciencia Comp, Ave Antonio Carlos,6627 Predio ICEx Pampulha, BR-31270901 Belo Horizonte, MG, Brazil
[2] Univ Fed Mato Grosso do Sul, Cidade Univ, BR-79070900 Campo Grande, MS, Brazil
关键词
Computer networks; Software-defined networking; OpenFlow; DNS; Telecom;
D O I
10.1007/s11235-019-00635-y
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
Software-defined networking (SDN) has provided a new paradigm for network management by allowing a central controller to program the underlying switches directly. However, OpenFlow, the de facto standard API for communicating with the switches, has limited visibility into the network headers, hindering innovations in the data plane and overloading the controller when a more sophisticated network application is needed. In this work, we leverage existing capabilities of modern switches to increase the abstraction power of OpenFlow and enrich the functionalities performed on the data plane of a network. We present an architecture that extends OpenFlow to support matching rules with domain names and provides data-plane operations that are only supported by the controller in existing approaches. Our architecture provides a better abstraction for programming the network and enables more concise policy specifications by requiring fewer rules in the switch flow table. To realize our architecture, we developed a prototype of a switch and a controller to handle the domain name extensions. We presented an application use case for blocking unwanted traffic required for Telecom companies. Our experimental results show that our solution reduces latency, number of rules in the switch, and number of packets sent to the controller. We also show that the new abstraction we provide can significantly reduce the code size of a network application.
引用
收藏
页码:67 / 82
页数:16
相关论文
共 50 条
  • [41] Toward manageable middleboxes in software-defined networking
    Zadkhosh, Ehsan
    Bahramgiri, Hossein
    Sabaei, Masoud
    ETRI JOURNAL, 2020, 42 (02) : 186 - 195
  • [42] Causal Analysis for Software-Defined Networking Attacks
    Ujcich, Benjamin E.
    Jero, Samuel
    Skowyra, Richard
    Bates, Adam
    Sanders, William H.
    Okhravi, Hamed
    PROCEEDINGS OF THE 30TH USENIX SECURITY SYMPOSIUM, 2021, : 3183 - 3200
  • [43] Proactive Host Mutation in Software-Defined Networking
    Aust, Matthew
    Mullins, Barry
    PROCEEDINGS OF THE 12TH INTERNATIONAL CONFERENCE ON CYBER WARFARE AND SECURITY (ICCWS 2017), 2017, : 453 - 460
  • [44] SDNaaS: Software-Defined Networking as an IXP Service
    Mendoza, John Robert
    Frias, Levin
    Austria, Isabel
    Festin, Cedric
    Ocampo, Roel
    2022 IEEE CONFERENCE ON NETWORK FUNCTION VIRTUALIZATION AND SOFTWARE DEFINED NETWORKS (IEEE NFV-SDN), 2022, : 59 - 65
  • [45] Performance Evaluation of the Controller in Software-Defined Networking
    Rout, Suchismita
    Patra, Sudhansu Shekhar
    Sahoo, Bibhudatta
    COMPUTATIONAL INTELLIGENCE IN DATA MINING, CIDM 2016, 2017, 556 : 543 - 551
  • [46] SOFTWARE-DEFINED NETWORKING SECURITY: PROS AND CONS
    Dabbagh, Mehiar
    Hamdaoui, Bechir
    Guizani, Mohsen
    Rayes, Ammar
    IEEE COMMUNICATIONS MAGAZINE, 2015, 53 : 73 - 79
  • [47] Security Challenges and Opportunities of Software-Defined Networking
    Dacier, Marc C.
    Koenig, Hartmut
    Cwalinski, Radoslaw
    Kargl, Frank
    Dietrich, Sven
    IEEE SECURITY & PRIVACY, 2017, 15 (02) : 96 - 100
  • [48] Data Protection Intents for Software-Defined Networking
    Ujcich, Benjamin E.
    Sanders, William H.
    PROCEEDINGS OF THE 2019 IEEE CONFERENCE ON NETWORK SOFTWARIZATION (NETSOFT 2019), 2019, : 271 - 275
  • [49] A Survey and a Layered Taxonomy of Software-Defined Networking
    Jarraya, Yosr
    Madi, Taous
    Debbabi, Mourad
    IEEE COMMUNICATIONS SURVEYS AND TUTORIALS, 2014, 16 (04): : 1955 - 1980
  • [50] Empowering networking research and experimentation through Software-Defined Networking
    Anan, Muhammad
    Al-Fuqaha, Ala
    Nasser, Nidal
    Mu, Ting-Yu
    Bustam, Husnain
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2016, 70 : 140 - 155