Docsdn: Dynamic And Optimal Configuration Of Software-Defined Networks

INFORMATION SECURITY AND PRIVACY, ACISP 2019(2019)

引用 4|浏览56
暂无评分
摘要
Networks are designed with functionality, security, performance, and cost in mind. Tools exist to check or optimize individual properties of a network. These properties may conflict, so it is not always possible to run these tools in series to find a configuration that meets all requirements. This leads to network administrators manually searching for a configuration.This need not be the case. In this paper, we introduce a layered framework for optimizing network configuration for functional and security requirements. Our framework is able to output configurations that meet reachability, bandwidth, and risk requirements. Each layer of our framework optimizes over a single property. A lower layer can constrain the search problem of a higher layer allowing the framework to converge on a joint solution.Our approach has the most promise for software-defined networks which can easily reconfigure their logical configuration. Our approach is validated with experiments over the fat tree topology, which is commonly used in data center networks. Search terminates in between 1-5 min in experiments. Thus, our solution can propose new configurations for short term events such as defending against a focused network attack.
更多
查看译文
关键词
Network configuration, Software Defined Networking, Reachability, Constraint programming, Optimization
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要